CVE-2025-15189: D-Link DWR-M920 formDefRoute sub_464794 buffer overflow
A vulnerability was identified in D-Link DWR-M920 up to 1.1.50. This issue affects the function sub464794 of the file /boafrm/formDefRoute. The manipulation of the argument submit-url leads to buffer overflow. The attack may be initiated remotely. The exploit is publicly available and might be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-15189?
CVE-2025-15189 is considered a high severity vulnerability due to its potential for remote exploitation leading to a buffer overflow.
How do I fix CVE-2025-15189?
To fix CVE-2025-15189, you should upgrade the D-Link DWR-M920 firmware to version 1.1.51 or later.
What are the potential impacts of CVE-2025-15189?
The potential impacts of CVE-2025-15189 include unauthorized remote code execution due to buffer overflow.
Who is affected by CVE-2025-15189?
CVE-2025-15189 affects users of D-Link DWR-M920 devices running firmware versions up to 1.1.50.
Can CVE-2025-15189 be exploited remotely?
Yes, CVE-2025-15189 can be exploited remotely, making it critical for users to address the vulnerability quickly.