CVE-2026-1625
EUVD-2026-493829.01.2026, 22:15
A vulnerability was detected in D-Link DWR-M961 1.1.47. The impacted element is the function sub_4250E0 of the file /boafrm/formSmsManage of the component SMS Message. Performing a manipulation of the argument action_value results in command injection. The attack may be initiated remotely. The exploit is now public and may be used.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| dlink | dwr-m961_firmware | 1.1.47 |
𝑥
= Vulnerable software versions