CVE-2025-7945: D-Link DIR-513 formSetWanDhcpplus buffer overflow
A vulnerability was found in D-Link DIR-513 up to 20190831. It has been declared as critical. This vulnerability affects the function formSetWanDhcpplus of the file /goform/formSetWanDhcpplus. The manipulation of the argument curTime leads to buffer overflow. The attack can be initiated remotely. This vulnerability only affects products that are no longer supported by the maintainer.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-7945?
The severity of CVE-2025-7945 has been declared as critical.
How does CVE-2025-7945 affect the D-Link DIR-513?
CVE-2025-7945 affects the function formSetWanDhcpplus and allows for a buffer overflow through the manipulation of the argument curTime.
What is the impact of exploiting CVE-2025-7945?
Exploiting CVE-2025-7945 could potentially allow an attacker to execute arbitrary code on the D-Link DIR-513.
How do I fix CVE-2025-7945?
To fix CVE-2025-7945, update the D-Link DIR-513 firmware to a version later than 20190831.
Who is affected by CVE-2025-7945?
Anyone using the D-Link DIR-513 up to and including version 20190831 is affected by CVE-2025-7945.