Junglewise Threat Intelligence

CVE-2025-50664: D-Link DI-8003 buffer overflow in /user_group.asp

CVE-2025-50664 · Severity: high · CVSS 7.5 · Published 2026-04-08

Technologies: Dlink Di-8003 Firmware, Dlink Di-8003. Vendors: Dlink, D-Link.

Executive brief

A security vulnerability has been identified in the D-Link DI-8003 enterprise router. An attacker can send a specially crafted web request to the device to cause a system crash or service outage. Because this product has reached its end-of-life status, no official security patches will be released, and the manufacturer recommends replacing the hardware with a supported model.

Technical details

A stack-based buffer overflow (CWE-121) exists in the D-Link DI-8003 firmware version 16.07.26A1. The vulnerability is located within the /user_group.asp endpoint due to improper validation of the 'name', 'mem', 'pri', and 'attr' parameters. An unauthenticated attacker can trigger the overflow by sending a crafted HTTP GET request containing overly long strings in these parameters. Successful exploitation leads to a denial-of-service (DoS) condition. As the DI-8003 is an End-of-Life (EoL) product, D-Link has stated that no firmware updates will be provided to address this issue.

Affected products

  • D-Link DI-8003 16.07.26A1

Timeline

  • 2026-04-08: disclosed
  • 2026-04-08: advisory: NVD Published Date
  • 2026-04-15: other: Vendor EoL announcement published

References

Related threats