CVE-2026-1625
- EPSS 0.02%
- Veröffentlicht 29.01.2026 22:02:13
- Zuletzt bearbeitet 20.02.2026 15:47:08
A vulnerability was detected in D-Link DWR-M961 1.1.47. The impacted element is the function sub_4250E0 of the file /boafrm/formSmsManage of the component SMS Message. Performing a manipulation of the argument action_value results in command injectio...
CVE-2026-1624
- EPSS 0.02%
- Veröffentlicht 29.01.2026 22:02:10
- Zuletzt bearbeitet 20.02.2026 15:47:52
A security vulnerability has been detected in D-Link DWR-M961 1.1.47. The affected element is an unknown function of the file /boafrm/formLtefotaUpgradeFibocom. Such manipulation of the argument fota_url leads to command injection. The attack can be ...
CVE-2026-1596
- EPSS 0.06%
- Veröffentlicht 29.01.2026 15:32:11
- Zuletzt bearbeitet 10.02.2026 17:42:17
A flaw has been found in D-Link DWR-M961 1.1.47. This vulnerability affects the function sub_419920 of the file /boafrm/formLtefotaUpgradeQuectel. This manipulation of the argument fota_url causes command injection. The attack is possible to be carri...
CVE-2025-13305
- EPSS 0.23%
- Veröffentlicht 17.11.2025 23:15:49
- Zuletzt bearbeitet 08.12.2025 14:35:13
A weakness has been identified in D-Link DWR-M920, DWR-M921, DWR-M960, DIR-822K and DIR-825M 1.01.07. This issue affects some unknown processing of the file /boafrm/formTracerouteDiagnosticRun. Executing manipulation of the argument host can lead to ...
- EPSS 0.23%
- Veröffentlicht 17.11.2025 22:32:07
- Zuletzt bearbeitet 08.12.2025 14:12:02
A security flaw has been discovered in D-Link DWR-M920, DWR-M921, DWR-M960, DWR-M961 and DIR-825M 1.01.07/1.1.47. This vulnerability affects unknown code of the file /boafrm/formPingDiagnosticRun. Performing manipulation of the argument host results ...
CVE-2025-3785
- EPSS 0.77%
- Veröffentlicht 18.04.2025 08:31:05
- Zuletzt bearbeitet 16.07.2025 15:31:16
A vulnerability has been found in D-Link DWR-M961 1.1.36 and classified as critical. This vulnerability affects unknown code of the file /boafrm/formStaticDHCP of the component Authorization Interface. The manipulation of the argument Hostname leads ...