PT-2025-53653 · D Link · D-Link Dwr-M920

Panda_0X1

·

Published

2025-12-28

·

Updated

2026-01-26

·

CVE-2025-15193

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions D-Link DWR-M920 versions up to 1.1.50
Description A flaw exists in D-Link DWR-M920 that could be exploited remotely. The issue resides in the sub 423848 function within the /boafrm/formParentControl file. Manipulation of the submit-url argument can lead to a buffer overflow. The exploit for this issue is publicly available.
Recommendations Update D-Link DWR-M920 to a version later than 1.1.50.

Exploit

Fix

Buffer Overflow

Weakness Enumeration

Related Identifiers

CVE-2025-15193

Affected Products

D-Link Dwr-M920