Metrics
Affected Vendors & Products
Wed, 16 Jul 2025 15:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Dlink
Dlink dwr-m961 Dlink dwr-m961 Firmware |
|
CPEs | cpe:2.3:h:dlink:dwr-m961:-:*:*:*:*:*:*:* cpe:2.3:o:dlink:dwr-m961_firmware:1.1.36:*:*:*:*:*:*:* |
|
Vendors & Products |
Dlink
Dlink dwr-m961 Dlink dwr-m961 Firmware |
Fri, 18 Apr 2025 12:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Fri, 18 Apr 2025 08:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability has been found in D-Link DWR-M961 1.1.36 and classified as critical. This vulnerability affects unknown code of the file /boafrm/formStaticDHCP of the component Authorization Interface. The manipulation of the argument Hostname leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 1.1.49 is able to address this issue. It is recommended to upgrade the affected component. | |
Title | D-Link DWR-M961 Authorization Interface formStaticDHCP stack-based overflow | |
Weaknesses | CWE-119 CWE-121 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-04-18T08:31:05.721Z
Updated: 2025-04-18T12:00:14.339Z
Reserved: 2025-04-18T02:26:36.841Z
Link: CVE-2025-3785

Updated: 2025-04-18T11:37:12.251Z

Status : Analyzed
Published: 2025-04-18T09:15:15.440
Modified: 2025-07-16T15:31:16.890
Link: CVE-2025-3785

No data.