CVE-2026-2958: D-Link DWR-M960 formWsc sub_457C5C stack-based overflow
A security vulnerability has been detected in D-Link DWR-M960 1.01.07. Affected is the function sub457C5C of the file /boafrm/formWsc. Such manipulation of the argument saveapply leads to stack-based buffer overflow. The attack may be launched remotely. The exploit has been disclosed publicly and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-2958?
CVE-2026-2958 is classified as a high severity vulnerability due to its potential for stack-based buffer overflow exploitation.
How do I fix CVE-2026-2958?
To fix CVE-2026-2958, update the D-Link DWR-M960 device firmware to the latest version provided by the manufacturer.
What are the potential impacts of CVE-2026-2958?
Exploitation of CVE-2026-2958 could lead to unauthorized access and code execution on the affected D-Link DWR-M960 device.
Which devices are affected by CVE-2026-2958?
CVE-2026-2958 affects the D-Link DWR-M960 router running firmware version 1.01.07.
How can I detect if CVE-2026-2958 is present on my device?
You can check the firmware version of your D-Link DWR-M960 router and ensure it is not version 1.01.07 or below to confirm the presence of CVE-2026-2958.