CVE-2025-29165

An issue in D-Link DIR-1253 MESH V1.6.1684 allows an attacker to escalate privileges via the etc/shadow.sample component
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:dlink:dir-1253_firmware:1.6.1684:*:*:*:*:*:*:*
cpe:2.3:h:dlink:dir-1253:-:*:*:*:*:*:*:*

History

06 May 2026, 17:58

Type Values Removed Values Added
References () https://codeberg.org/zuhri/advisory/src/branch/main/CVE-2025-29165 - () https://codeberg.org/zuhri/advisory/src/branch/main/CVE-2025-29165 - Broken Link
References () https://github.com/twentysevns/Vuln-IoT-Reports/blob/main/DLINK/DIR-1253/README.md - () https://github.com/twentysevns/Vuln-IoT-Reports/blob/main/DLINK/DIR-1253/README.md - Broken Link
References () https://www.dlink.com/en/security-bulletin/ - () https://www.dlink.com/en/security-bulletin/ - Product
References () https://zuh.re/cve/2025-29165/ - () https://zuh.re/cve/2025-29165/ - Broken Link
First Time Dlink dir-1253
Dlink
Dlink dir-1253 Firmware
CPE cpe:2.3:o:dlink:dir-1253_firmware:1.6.1684:*:*:*:*:*:*:*
cpe:2.3:h:dlink:dir-1253:-:*:*:*:*:*:*:*

20 Mar 2026, 19:16

Type Values Removed Values Added
References
  • () https://zuh.re/cve/2025-29165/ -

09 Mar 2026, 13:36

Type Values Removed Values Added
Summary
  • (es) Un problema en D-Link DIR-1253 MESH V1.6.1684 permite a un atacante escalar privilegios a través del componente etc/shadow.sample

06 Mar 2026, 10:16

Type Values Removed Values Added
CWE CWE-269
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8

05 Mar 2026, 20:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-05 20:16

Updated : 2026-05-06 17:58


NVD link : CVE-2025-29165

Mitre link : CVE-2025-29165

CVE.ORG link : CVE-2025-29165


JSON object : View

Products Affected

dlink

  • dir-1253_firmware
  • dir-1253
CWE
CWE-269

Improper Privilege Management