CVE-2025-50645: D-Link Di-8003 Firmware

High severity, CVSS 7.5. EPSS: 0.5% chance of exploitation in the next 30 days.

A vulnerability has been discovered in D-Link DI-8003 16.07.26A1, which can lead to a buffer overflow when the s parameter in the pppoe_list_opt.asp endpoint is manipulated. By sending a crafted request with an excessively large value for the s parameter, an attacker can trigger a buffer overflow condition.

Affected products

  • D-Link Di-8003 Firmware: version 16.07.26a1 only

Published 2026-04-08. Last modified 2026-07-25.