
🚨 HIGH: CVE-2025-15190 (CVSS 8.8) - Stack-based buffer overflow in D-Link DWR-M920 (≤v1.1.50). Exploit public. Remote attack possible. Patch immediately if affected. #CVE #Vulnerability #PatchNow #ThreatIntel #DFIR https://t.co/AUjIfF9A0g
Signal is active with 1 mentions in latest observed window
Recommended action window: Monitor and triage in normal cycle
NVD description
A security flaw has been discovered in D-Link DWR-M920 up to 1.1.50. Impacted is the function sub_42261C of the file /boafrm/formFilter. The manipulation of the argument ip6addr results in stack-based buffer overflow. The attack may be launched remotely. The exploit has been released to the public and may be exploited.
Priority
LOW
Exploitation
NONE
PoC
YES
Patch
NONE
Momentum
NONE
If you run products in this scope, you should treat this CVE as relevant to your environment.
1 version affected across 2 products

🚨 HIGH: CVE-2025-15190 (CVSS 8.8) - Stack-based buffer overflow in D-Link DWR-M920 (≤v1.1.50). Exploit public. Remote attack possible. Patch immediately if affected. #CVE #Vulnerability #PatchNow #ThreatIntel #DFIR https://t.co/AUjIfF9A0g
2 of 2 entries
| Part | Vendor | Product | Version | Target SW | Target HW |
|---|---|---|---|---|---|
| HW | dlink | dwr-m920 | - | - | - |
| OS | dlink | dwr-m920_firmware | - | - | - |