Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
D-Link DWR-M960 System Log Configuration Endpoint formSysLog sub_462E14 stack-based overflow
Vulnerability Description
A vulnerability was detected in D-Link DWR-M960 1.01.07. This affects the function sub_462E14 of the file /boafrm/formSysLog of the component System Log Configuration Endpoint. Performing a manipulation of the argument submit-url results in stack-based buffer overflow. The attack can be initiated remotely. The exploit is now public and may be used.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
栈缓冲区溢出
Vulnerability Title
D-Link DWR-M960 安全漏洞
Vulnerability Description
D-Link DWR-M960是中国友讯(D-Link)公司的一款路由器。 D-Link DWR-M960 1.01.07版本存在安全漏洞,该漏洞源于System Log Configuration Endpoint组件中文件/boafrm/formSysLog的函数sub_462E14对参数submit-url的错误操作,可能导致栈缓冲区溢出攻击。
CVSS Information
N/A
Vulnerability Type
N/A