CVE-2026-2959Disclosure(dlink / dwr-m960)

LOWCVSS 7.4 · HIGH

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Patch dlink dwr-m960 systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft

Recommended action window: High priority (within 72h)

NVD description

A vulnerability was detected in D-Link DWR-M960 1.01.07. Affected by this vulnerability is the function sub_44E0F8 of the file /boafrm/formNewSchedule. Performing a manipulation of the argument url results in stack-based buffer overflow. Remote exploitation of the attack is possible. The exploit is now public and may be used.

2.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-119CWE-121

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • dwr-m960
  • dwr-m960_firmware

Threat summary

  • Public PoC is present in monitored signal
  • Patch or workaround signal is available
  • 5 mentions across 4 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 1 signal
  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 5 signals
  • Disclosure: 4 classified signals
  • Peaked 2d ago at 2 mentions (2026-02-23); latest day: 1
  • 5 total mentions across 4 days

Affected systems

Vendors
Products
dwr-m960dwr-m960_firmware

2 versions affected across 2 products

Deep dive

Activity timeline5 mentions / 4d
01122Mentions · 2026-02-22: 1Mentions · 2026-02-23: 2Mentions · 2026-02-27: 1Mentions · 2026-02-28: 1PoC Mentioned / Linked · 2026-02-23: 1Patch / Workaround · 2026-02-23: 1Technical Details · 2026-02-22: 1Technical Details · 2026-02-23: 2Technical Details · 2026-02-27: 1Technical Details · 2026-02-28: 102-2202-2302-2702-28
Signal classification2 categories
Disclosure
480.0%
Patch
120.0%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-02-221
Disclosure1
2026-02-232
Disclosure1Patch1
2026-02-271
Disclosure1
2026-02-281
Disclosure1
Full discourse5 posts
  • CRAC Learning - Tech@cracbot
    Disclosure

    CVE-2026-2959 (CVSS:7.4, HIGH) is Analyzed. A vulnerability was detected in D-Link DWR-M960 1.01.07. Affected by this vulnerability is the function sub_44E0F8 of th..https://nvd.nist.gov/vuln/detail/CVE-2026-2959 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    The tweet announces CVE-2026-2959, a high‑severity flaw in the D-Link DWR‑M960’s sub_44E0F8 function, but provides no evidence of a PoC, exploit, or patch.

    0000019
    173 followersView on X
  • CRAC Learning - Tech@cracbot
    Disclosure

    CVE-2026-2959 (CVSS:7.4, HIGH) is Analyzed. A vulnerability was detected in D-Link DWR-M960 1.01.07. Affected by this vulnerability is the function sub_44E0F8 of th..https://nvd.nist.gov/vuln/detail/CVE-2026-2959 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    The post briefly announces CVE‑2026‑2959, noting its CVSS score, severity, and the affected function, and links to the NVD record.

    0000018
    173 followersView on X
  • CVEarity@CVEarity
    Disclosure

    ⚡ New CVE Alert: CVE-2026-2959 📊 Severity: 8.8 🚨 Risk Level: High 🧩 Affects: Multiple / Unspecified Products Reference: https://nvd.nist.gov/vuln/detail/CVE-2026-2959 #CVE-2026-2959 #CVE #High #CyberSecurity #InfoSec https://t.co/69vbJOp9Tq

    Post summary

    A new CVE-2026-2959 with a severity score of 8.8 and high risk level is announced, affecting multiple unspecified products, with a reference to the NVD entry.

    0000046
    57 followersView on X
  • OffSeq | Adversary Tactics for Cyber Resilience@offseq
    Patch

    🚨 HIGH severity alert: D-Link DWR-M960 v1.01.07 is vulnerable to a stack-based buffer overflow (public exploit out!). Remote attack possible — update ASAP! https://radar.offseq.com/threat/cve-2026-2959-stack-based-buffer-overflow-in-d-lin-54cc012d #OffSeq #DLink #Infosec https://t.co/1NUwHzpvXo

    Post summary

    The tweet announces a high‑severity stack‑based buffer overflow in a D‑Link device, mentions a public exploit has been released, and urges users to apply updates immediately, highlighting the need for a vendor patch.

    0000047
    270 followersView on X
  • CVEFind.com@CveFindCom
    Disclosure

    [CVE-2026-2959: HIGH] Vulnerability in D-Link DWR-M960 1.01.07 allows manipulation of URLs, resulting in stack-based buffer overflow. Remote attack possible via sub_44E0F8 in /boafrm/formNewSchedule function. ...#cve,CVE-2026-2959,#cybersecurity https://cvefind.com/CVE-2026-2959

    Post summary

    The post announces a high‑severity stack‑based buffer overflow in D‑Link DWR‑M960 firmware, detailing the vulnerable function and URL manipulation vector, but provides no PoC, exploit code, or patch information.

    0000060
    584 followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
HWdlinkdwr-m960b1--
OSdlinkdwr-m960_firmware1.01.07--

Explore more