CVE-2025-55582 is a local privilege escalation vulnerability affecting D-Link DCS-825L firmware versions prior to v1.09.02. The device's watchdog script blindly respawns binaries as root, allowing an attacker with local filesystem access to replace legitimate executables with malicious payloads. This leads to persistent arbitrary code execution with root privileges. Rated 6.6 MEDIUM, exploitation requires physical access or prior firmware modification, but the impact is high for confidentiality, integrity, and availability. There is no evidence of active exploitation, public exploit code, or significant community discussion, and the product is End-of-Life.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
1.08.01CPE matchmatch criteria | cpe:2.3:o:dlink:dcs-825l_firmware:1.08.01:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.