A vulnerability was found in D-Link DIR-825M 1.1.12. It has been classified as critical. This vulnerability affects the function sub_4151FC of the file /boafrm/formVpnConfigSetup. The manipulation of the argument submit-url leads to buffer overflow.

This vulnerability is referenced as CVE-2026-7288. Remote exploitation of the attack is possible. Furthermore, an exploit is available.