Severity
7.4HIGH
EPSS
0.5%
top 35.13%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJul 20
Latest updateJul 21

Description

A vulnerability was found in D-Link DIR-513 1.0. It has been rated as critical. Affected by this issue is the function sprintf of the file /goform/formLanSetupRouterSettings of the component Boa Webserver. The manipulation of the argument curTime leads to stack-based buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. This vulnerability only affects products that are no longer supported by the maintainer.

CVSS vector

CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

Affected Packages1 packages

CVEListV5d-link/dir-5131.0

🔴Vulnerability Details

2
GHSA
GHSA-w833-57v8-vqcj: A vulnerability was found in D-Link DIR-513 12025-07-21
CVEList
D-Link DIR-513 Boa Webserver formLanSetupRouterSettings sprintf stack-based overflow2025-07-20