CVE-2025-5215

Published May 27, 2025

Last updated a month ago

Overview

Description
A vulnerability classified as critical has been found in D-Link DCS-5020L 1.01_B2. This affects the function websReadEvent of the file /rame/ptdc.cgi. The manipulation of the argument Authorization leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. This vulnerability only affects products that are no longer supported by the maintainer.
Source
cna@vuldb.com
NVD status
Analyzed
CNA Tags
unsupported-when-assigned

Risk scores

CVSS 4.0

Type
Secondary
Base score
8.7
Impact score
-
Exploitability score
-
Vector string
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Severity
HIGH

CVSS 3.1

Type
Primary
Base score
9.8
Impact score
5.9
Exploitability score
3.9
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Severity
CRITICAL

CVSS 2.0

Type
Secondary
Base score
9
Impact score
10
Exploitability score
8
Vector string
AV:N/AC:L/Au:S/C:C/I:C/A:C

Weaknesses

cna@vuldb.com
CWE-119
nvd@nist.gov
CWE-787

Social media

Hype score
Not currently trending
  1. CVE-2025-5215 (CVSS:8.7, HIGH) is Awaiting Analysis. A vulnerability classified as critical has been found in D-Link DCS-5020L 1.01_B2. This affects the function websReadEve..https://t.co/ONJPP5E6vW #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    @cracbot

    1 Jun 2025

    0 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. CVE-2025-5215 (CVSS:8.7, HIGH) is Awaiting Analysis. A vulnerability classified as critical has been found in D-Link DCS-5020L 1.01_B2. This affects the function websReadEve..https://t.co/ONJPP5DyGo #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    @cracbot

    31 May 2025

    18 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  3. 🚨 CVE-2025-5215 🔴 HIGH (8.7) 🏢 D-Link - DCS-5020L 🏗️ 1.01_B2 🔗 https://t.co/Lil62I64bn 🔗 https://t.co/FXBi75dIRG 🔗 https://t.co/q3uvwFD8dz 🔗 https://t.co/gi4YqWsgej 🔗 https://t.co/tet6dOiMQZ 🔗 https://t.co/sYyss3yo3N #CyberCron #VulnAlert #InfoSec

    @cybercronai

    27 May 2025

    19 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  4. CVE-2025-5215 A vulnerability classified as critical has been found in D-Link DCS-5020L 1.01_B2. This affects the function websReadEvent of the file /rame/ptdc.cgi. The manipulation … https://t.co/hKqfjpZrhV

    @CVEnew

    27 May 2025

    492 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  5. [CVE-2025-5215: HIGH] Critical vulnerability found in D-Link DCS-5020L 1.01_B2. Exploit allows remote stack-based buffer overflow through Authorization manipulation in websReadEvent, impacting unsupported prod...#cve,CVE-2025-5215,#cybersecurity https://t.co/WEs6ofXNxV https://t.

    @CveFindCom

    27 May 2025

    54 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

Configurations