A vulnerability marked as critical has been reported in D-Link DIR-825 up to 3.00b32. This impacts the function
AddPortMapping of the file upnpsoap.c of the component miniupnpd. Performing a manipulation of the argument NewPortMappingDescription results in buffer overflow. This vulnerability only affects products that are no longer supported by the maintainer.
This vulnerability was named CVE-2026-7069. The attack needs to be approached within the local network. In addition, an exploit is available.