A security vulnerability has been detected in D-Link DWR-M960 1.01.07. Affected is the function sub_457C5C of the file /boafrm/formWsc. Such manipulation of the argument save_apply leads to stack-based buffer overflow.
The attack may be launched remotely. The exploit has been disclosed publicly and may be used.
Attack Parameters
Impact Assessment
CVSS Vector v4.0
Weakness Type (CWE)
Vulnerable Products 2
| Configuration | From (including) | Up to (excluding) |
|---|---|---|
|
Dlink Dwr-M960_Firmware
cpe:2.3:o:dlink:dwr-m960_firmware:1.01.07:*:*:*:*:*:*:*
|
— | — |
|
Dlink Dwr-M960
cpe:2.3:h:dlink:dwr-m960:b1:*:*:*:*:*:*:*
|
— | — |