Rewterz

Multiple Intel Products Vulnerabilities

June 25, 2025
Rewterz

Gh0st RAT – Active IOCs

June 25, 2025

Multiple D-Link Products Vulnerabilities

Severity

High

Analysis Summary

CVE-2025-6616 CVSS:8.8

A vulnerability has been found in D-Link DIR-619L 2.06B01 and classified as critical. This vulnerability affects the function formSetWAN_Wizard51 of the file /goform/formSetWAN_Wizard51. The manipulation of the argument curTime leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. This vulnerability only affects products that are no longer supported by the maintainer.

CVE-2025-6328 CVSS:8.8

A vulnerability was found in D-Link DIR-815 1.01. It has been declared as critical. This vulnerability affects the function sub_403794 of the file hedwig.cgi. The manipulation leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

Impact

  • Buffer Overflow

Indicators of Compromise

CVE

  • CVE-2025-6616

  • CVE-2025-6328

Affected Vendors

  • D-Link

Affected Products

  • D-Link DIR-619L 2.06B01
  • D-Link DIR-815 1.01

Remediation

Refer to the D-Link Security Advisory for patch, upgrade, or suggested workaround information.

CVE-2025-6616

CVE-2025-6328

Reading this advisory was a good start.

Make it a habit.

Rewterz publishes threat advisories ahead of mainstream cybersecurity media, informed by an AI-Native Autonomous SOC that sees regional threat actor activity in real time. Subscribe to receive each new advisory as it publishes, plus a monthly Middle East threat landscape brief drawn from our own SOC telemetry. For teams evaluating their detection coverage, a 30-minute consultation with a senior analyst is also available, at your pace, when you're ready.