PT-2025-30220 · Unknown+1 · Boa Web Server+1
Bazhuayu
·
Published
2025-07-18
·
Updated
2025-07-25
·
CVE-2025-7909
CVSS v2.0
9.0
High
| Vector | AV:N/AC:L/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
D-Link DIR-513 version 1.0
Description
A critical vulnerability exists in the Boa Webserver component of the affected product. The
sprintf function within the /goform/formLanSetupRouterSettings file is susceptible to a stack-based buffer overflow when the curTime argument is manipulated. This allows for remote attacks. The exploit for this vulnerability has been publicly disclosed and may be utilized. This issue only affects products that are no longer supported by the manufacturer.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Stack Overflow
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Boa Web Server
Dir-513