A vulnerability has been found in D-Link DIR-822K and DWR-M920 1.00_20250513164613/1.1.50. This vulnerability affects unknown code of the file /boafrm/formFirewallAdv. Such manipulation of the argument submit-url leads to buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
2025-11-23T12:15:45.770
2025-12-02T03:32:26.303
Analyzed
CVSSv3.1: 8.8 (HIGH)
AV:N/AC:L/Au:S/C:C/I:C/A:C
8.0
10.0
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Operating System | dlink | dir-822k_firmware | 1.00_20250513164613 | Yes |
| Hardware | dlink | dir-822k | - | No |
| Operating System | dlink | dwr-m920_firmware | 1.1.50 | Yes |
| Hardware | dlink | dwr-m920 | b2 | No |