Metrics
Affected Vendors & Products
Tue, 15 Jul 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
epss
|
epss
|
Mon, 14 Jul 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Dlink
Dlink di-500wf Dlink di-500wf Firmware |
|
CPEs | cpe:2.3:h:dlink:di-500wf:-:*:*:*:*:*:*:* cpe:2.3:o:dlink:di-500wf_firmware:17.04.10a1t:*:*:*:*:*:*:* |
|
Vendors & Products |
Dlink
Dlink di-500wf Dlink di-500wf Firmware |
Mon, 14 Jul 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
epss
|
epss
|
Tue, 08 Jul 2025 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 08 Jul 2025 20:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was found in D-Link DI-500WF 17.04.10A1T. It has been declared as critical. Affected by this vulnerability is the function sprintf of the file ip_position.asp of the component jhttpd. The manipulation of the argument ip leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. | |
Title | D-Link DI-500WF jhttpd ip_position.asp sprintf stack-based overflow | |
Weaknesses | CWE-119 CWE-121 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-07-08T20:32:06.360Z
Updated: 2025-07-08T20:49:58.352Z
Reserved: 2025-07-07T08:42:20.890Z
Link: CVE-2025-7194

Updated: 2025-07-08T20:49:55.272Z

Status : Analyzed
Published: 2025-07-08T21:15:29.763
Modified: 2025-07-14T15:14:48.423
Link: CVE-2025-7194

No data.