Impact
A stack-based buffer overflow can be triggered by manipulating the submit-url parameter in the formDhcpv6s module of a D-Link DWR-M960 router. An attacker exploiting this flaw can cause a stack overflow and achieve arbitrary code execution on the device from a remote location, compromising its confidentiality, integrity, and availability.
Affected Systems
The vulnerability affects D-Link DWR-M960 routers running firmware 1.01.07. Any device that has not applied a subsequent firmware update that addresses the sub_468D64 function is susceptible to exploitation.
Risk and Exploitability
The CVSS score of 8.7 indicates a high severity vulnerability, while the EPSS score of less than 1% suggests a low current exploitation probability. The flaw is not listed in CISA’s KEV catalog, but the published exploit demonstrates that remote attacks are feasible. Attackers only need remote network access to craft a malicious submit-url request, making the exploit straightforward once the vulnerability is known.
OpenCVE Enrichment