CVE-2026-7068Disclosure(dlink / dir-825)

LOWCVSS 7.4 · HIGH

Signal is active with 3 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A vulnerability was identified in D-Link DIR-825 3.00b32. This affects the function NMBD_process of the file sserver.c of the component nmbd. Such manipulation leads to buffer overflow. The attack can only be initiated within the local network. The exploit is publicly available and might be used. This vulnerability only affects products that are no longer supported by the maintainer.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-119CWE-120

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • dir-825
  • dir-825_firmware

Threat summary

  • 4 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 1 signal
  • Disclosure: 2 classified signals
  • General: 2 classified signals
  • Peaked at 3 mentions on most recent observed day (2026-04-27)
  • 4 total mentions across 2 days

Affected systems

Vendors
Products
dir-825dir-825_firmware

2 versions affected across 2 products

Deep dive

Activity timeline4 mentions / 2d
01223Mentions · 2026-04-26: 1Mentions · 2026-04-27: 3Technical Details · 2026-04-27: 104-2604-27
Signal classification2 categories
Disclosure
250.0%
General
250.0%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-04-261
Disclosure1
2026-04-273
Disclosure1General2
Full discourse4 posts
  • VulDB 🛡@vuldb
    Disclosure

    A severe vulnerability was disclosed for D-Link DIR-825 (CVE-2026-7068) https://vuldb.com/vuln/359643

    Post summary

    The tweet announces the disclosure of CVE-2026-7068 for the D‑Link DIR‑825, linking to an external database but lacking any detailed technical or exploit information.

    0101078
    2.1K followersView on X
  • CVE@CVEnew
    General

    CVE-2026-7068 A vulnerability was identified in D-Link DIR-825 3.00b32. This affects the function NMBD_process of the file sserver.c of the component nmbd. Such manipulation leads to… https://www.cve.org/CVERecord?id=CVE-2026-7068

    Post summary

    The post references CVE‑2026‑7068 with a short description and a link to the CVE record, but it lacks detailed technical information, exploit code, or indicators of active exploitation.

    00000130
    57.3K followersView on X
  • CVEarity@CVEarity
    General

    ⚡ New CVE Alert: CVE-2026-7068 📊 Severity: 8.8 🚨 Risk Level: High 🧩 Affects: Multiple / Unspecified Products Reference: https://nvd.nist.gov/vuln/detail/CVE-2026-7068 #CVE-2026-7068 #CVE #High #CyberSecurity #InfoSec https://t.co/9FU8HdXujC

    Post summary

    A brief announcement of CVE-2026-7068, noting its severity and unspecified product impact, without further technical details, PoC, exploit, or mitigation information.

    0000047
    141 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-7068 Buffer Overflow in D-Link DIR-825 3.00b32 NMBD Process Component https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-7068

    Post summary

    A concise note states that CVE‑2026‑7068 is a buffer overflow in D‑Link DIR‑825’s NMBD component, linking to a vulnerability detail page, without providing PoC, exploit, patch, or exploitation evidence.

    0000053
    4.0K followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
HWdlinkdir-825---
OSdlinkdir-825_firmware3.00b32--

Explore more