CVE-2025-50669 is a buffer overflow vulnerability affecting D-Link DI-8003 versions 16.07.26A1 and DI-8003G 19.12.10A1, stemming from improper validation of the wan_ping parameter in the /wan_ping.asp endpoint. The flaw allows unauthenticated remote attackers to trigger a denial of service condition through network-based exploitation requiring no special conditions or user interaction. With a CVSS score of 7.5 (HIGH), the vulnerability carries significant risk due to its low attack complexity and network accessibility, though it does not compromise confidentiality or integrity. Currently, there is no evidence of active exploitation or widespread availability of functional exploit code, as indicated by its absence from the Known Exploited Vulnerabilities catalog and low EPSS probability score of 0.0005. Community attention remains minimal at present, suggesting this remains a lower-priority concern despite its elevated severity rating.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
16.07.26a1CPE matchmatch criteria | cpe:2.3:o:dlink:di-8003_firmware:16.07.26a1:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.