Description
A flaw has been found in D-Link DWR-M960 1.01.07. This affects the function sub_4237AC of the file /boafrm/formLteSetup of the component LTE Configuration Endpoint. Executing a manipulation of the argument submit-url can lead to stack-based buffer overflow. The attack can be launched remotely. The exploit has been published and may be used.
Published: 2026-02-22
Score: 8.7 High
EPSS: < 1% Very Low
KEV: No
Impact: Remote code execution
Action: Immediate Patch
AI Analysis

Impact

The vulnerability is a stack-based buffer overflow in the LTE Configuration Endpoint of the D-Link DWR-M960. Manipulating the submit-url parameter within the formLteSetup function allows a remote attacker to overwrite control data on the stack, which can lead to arbitrary code execution or complete device takeover. This flaw is based on classic buffer overflow weaknesses (CWE-119 and CWE-121) and has been confirmed to have a published exploit.

Affected Systems

The affected product is the D-Link DWR-M960 router with firmware version 1.01.07. Only this particular firmware release contains the vulnerable function and is therefore at risk.

Risk and Exploitability

The CVSS base score of 8.7 marks the issue as high severity, and the EPSS score of less than 1% indicates a low current exploitation probability, though a known exploit exists. The attack can be launched remotely by sending a crafted POST request to /boafrm/formLteSetup without the need for authentication, giving an attacker the ability to execute arbitrary code and potentially control the device.

Generated by OpenCVE AI on April 18, 2026 at 11:12 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade the device firmware to the latest version that includes the fix for the LTE Configuration Endpoint code.
  • Restrict access to the LTE Configuration Endpoint (blocked /boafrm endpoint or network ACLs) and limit management interface exposure to trusted IP ranges.
  • Monitor device logs and network traffic for anomalous POST requests to /boafrm/formLteSetup and respond to any suspicious activity.

Generated by OpenCVE AI on April 18, 2026 at 11:12 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 23 Feb 2026 19:45:00 +0000

Type Values Removed Values Added
First Time appeared Dlink
Dlink dwr-m960
Dlink dwr-m960 Firmware
CPEs cpe:2.3:h:dlink:dwr-m960:b1:*:*:*:*:*:*:*
cpe:2.3:o:dlink:dwr-m960_firmware:1.01.07:*:*:*:*:*:*:*
Vendors & Products Dlink
Dlink dwr-m960
Dlink dwr-m960 Firmware

Mon, 23 Feb 2026 15:00:00 +0000

Type Values Removed Values Added
First Time appeared D-link
D-link dwr-m960
Vendors & Products D-link
D-link dwr-m960

Sun, 22 Feb 2026 05:00:00 +0000

Type Values Removed Values Added
Description A flaw has been found in D-Link DWR-M960 1.01.07. This affects the function sub_4237AC of the file /boafrm/formLteSetup of the component LTE Configuration Endpoint. Executing a manipulation of the argument submit-url can lead to stack-based buffer overflow. The attack can be launched remotely. The exploit has been published and may be used.
Title D-Link DWR-M960 LTE Configuration Endpoint formLteSetup sub_4237AC stack-based overflow
Weaknesses CWE-119
CWE-121
References
Metrics cvssV2_0

{'score': 9, 'vector': 'AV:N/AC:L/Au:S/C:C/I:C/A:C/E:POC/RL:ND/RC:UR'}

cvssV3_0

{'score': 8.8, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:P/RL:X/RC:R'}

cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:P/RL:X/RC:R'}

cvssV4_0

{'score': 8.7, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:P'}


Subscriptions

D-link Dwr-m960
Dlink Dwr-m960 Dwr-m960 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2026-02-26T16:25:19.270Z

Reserved: 2026-02-21T04:58:30.708Z

Link: CVE-2026-2926

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2026-02-22T05:16:15.147

Modified: 2026-02-23T19:35:45.083

Link: CVE-2026-2926

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-04-18T11:15:35Z

Weaknesses