CVE-2025-7085: Belkin F9K1122 webs formiNICWpsStart stack-based overflow
A vulnerability was found in Belkin F9K1122 1.00.33. It has been rated as critical. This issue affects the function formiNICWpsStart of the file /goform/formiNICWpsStart of the component webs. The manipulation of the argument pinCode leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-7085?
CVE-2025-7085 is rated as critical.
What component is affected by CVE-2025-7085?
CVE-2025-7085 affects the function formiNICWpsStart in the component webs.
What type of vulnerability is CVE-2025-7085?
CVE-2025-7085 is a stack-based buffer overflow vulnerability.
How does CVE-2025-7085 occur?
CVE-2025-7085 occurs through manipulation of the argument pinCode.
How can I mitigate CVE-2025-7085?
To mitigate CVE-2025-7085, it is recommended to apply the latest firmware updates from Belkin for the F9K1122 model.