CVE-2026-2958

Severity CVSS v4.0:
HIGH
Type:
CWE-119 Buffer Errors
Publication date:
23/02/2026
Last modified:
23/02/2026

Description

A security vulnerability has been detected in D-Link DWR-M960 1.01.07. Affected is the function sub_457C5C of the file /boafrm/formWsc. Such manipulation of the argument save_apply leads to stack-based buffer overflow. The attack may be launched remotely. The exploit has been disclosed publicly and may be used.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:dlink:dwr-m960_firmware:1.01.07:*:*:*:*:*:*:*
cpe:2.3:h:dlink:dwr-m960:b1:*:*:*:*:*:*:*