CVE-2026-2929: D-Link DWR-M960 Wireless Access Control Endpoint formWlAc sub_453140 stack-based overflow
A vulnerability was determined in D-Link DWR-M960 1.01.07. Impacted is the function sub453140 of the file /boafrm/formWlAc of the component Wireless Access Control Endpoint. This manipulation of the argument submit-url causes stack-based buffer overflow. Remote exploitation of the attack is possible. The exploit has been publicly disclosed and may be utilized.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-2929?
CVE-2026-2929 is classified as a high severity vulnerability due to its potential for stack-based overflow leading to arbitrary code execution.
How do I fix CVE-2026-2929?
To fix CVE-2026-2929, update your D-Link DWR-M960 device to the latest firmware version provided by D-Link.
What systems are affected by CVE-2026-2929?
CVE-2026-2929 affects the D-Link DWR-M960 model specifically running version 1.01.07.
What type of exploitation does CVE-2026-2929 allow?
CVE-2026-2929 allows for stack-based buffer overflow exploits that can lead to remote code execution.
Is CVE-2026-2929 under active exploitation?
As of current reports, CVE-2026-2929 is known but active exploitation details may vary depending on threat actor activity.