Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-11833 | A vulnerability has been found in D-Link DWR-M961 1.1.36 and classified as critical. This vulnerability affects unknown code of the file /boafrm/formStaticDHCP of the component Authorization Interface. The manipulation of the argument Hostname leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 1.1.49 is able to address this issue. It is recommended to upgrade the affected component. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Wed, 16 Jul 2025 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Dlink
Dlink dwr-m961 Dlink dwr-m961 Firmware |
|
| CPEs | cpe:2.3:h:dlink:dwr-m961:-:*:*:*:*:*:*:* cpe:2.3:o:dlink:dwr-m961_firmware:1.1.36:*:*:*:*:*:*:* |
|
| Vendors & Products |
Dlink
Dlink dwr-m961 Dlink dwr-m961 Firmware |
Fri, 18 Apr 2025 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 18 Apr 2025 08:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability has been found in D-Link DWR-M961 1.1.36 and classified as critical. This vulnerability affects unknown code of the file /boafrm/formStaticDHCP of the component Authorization Interface. The manipulation of the argument Hostname leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 1.1.49 is able to address this issue. It is recommended to upgrade the affected component. | |
| Title | D-Link DWR-M961 Authorization Interface formStaticDHCP stack-based overflow | |
| Weaknesses | CWE-119 CWE-121 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-04-18T12:00:14.339Z
Reserved: 2025-04-18T02:26:36.841Z
Link: CVE-2025-3785
Updated: 2025-04-18T11:37:12.251Z
Status : Analyzed
Published: 2025-04-18T09:15:15.440
Modified: 2025-07-16T15:31:16.890
Link: CVE-2025-3785
No data.
OpenCVE Enrichment
No data.
EUVD