CVE-2025-28395: D-Link Di-8100 Firmware

High severity, CVSS 7.1. EPSS: 0.6% chance of exploitation in the next 30 days.

D-LINK DI-8100 16.07.26A1 is vulnerable to Buffer Overflow in the ipsec_road_asp function via the host_ip parameter.

Affected products

  • D-Link Di-8100 Firmware: version 16.07.26 only

Published 2025-04-01. Last modified 2026-06-17.