CVE Details
Basic Information
| Title | D-Link DIR-513 formSetWanPPPoE websAspInit buffer overflow |
|---|---|
| Type | cve |
| Published | 2025-07-25T20:02:06.070Z |
| Modified | 2025-07-25T20:35:47.282Z |
Product Information
| Vendor | D-Link |
|---|---|
| Product | DIR-513 |
| Version | 1.10 |
CVSS Information
| Base Score | 8.7 (HIGH) |
|---|---|
| Attack Vector | CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:P |
AI Analysis
| AI Description | A buffer overflow vulnerability in the D-Link DIR-513 router’s formSetWanPPPoE function allows remote exploitation. This issue is critical and affects version 1.10, which is no longer supported. |
|---|---|
| AI Severity | Critical |
| AI Vendor | D-Link |
| AI Product | DIR-513 |
| AI Version | 1.10 |
Affected Products
- D-Link DIR-513 1.10
Additional Information
| CWE List | CWE-120, CWE-119 |
|---|---|
| Source | VulDB |
Description
A vulnerability was found in D-Link DIR-513 1.10. It has been rated as critical. Affected by this issue is the function websAspInit of the file /goform/formSetWanPPPoE. The manipulation of the argument curTime leads to buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. This vulnerability only affects products that are no longer supported by the maintainer.