Junglewise Threat Intelligence

CVE-2025-50648: D-Link DI-8003 buffer overflow in /tggl.asp

CVE-2025-50648 · Severity: high · CVSS 7.5 · Published 2026-04-08

Technologies: Dlink Di-8003 Firmware, Dlink Di-8003. Vendors: Dlink, D-Link.

Executive brief

A security vulnerability has been identified in the D-Link DI-8003 enterprise router. This flaw allows a remote attacker to crash the device by sending specially crafted data to a specific web management page. Because this product has reached its end-of-life status, no official security patches will be released, and the manufacturer recommends replacing the hardware to maintain network security.

Technical details

A classic buffer overflow (CWE-120) exists in the D-Link DI-8003 router, specifically within the firmware version 16.07.26A1. The vulnerability is located in the /tggl.asp endpoint and is caused by inadequate input validation of user-supplied data. A remote, unauthenticated attacker can exploit this by sending a crafted request to the affected endpoint, leading to a buffer overflow. According to the CVSS metrics provided by CISA-ADP, the primary impact is on system availability (Denial of Service). As the DI-8003 is an End-of-Life (EoL) product, D-Link has stated that no firmware updates will be provided to address this issue.

Affected products

  • D-Link DI-8003 16.07.26A1

Timeline

  • 2026-04-08: disclosed
  • 2026-04-15: advisory: Vendor published EoL notice in response to reports

References

Related threats