Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-20699 | A vulnerability was found in D-Link DI-500WF 17.04.10A1T. It has been declared as critical. Affected by this vulnerability is the function sprintf of the file ip_position.asp of the component jhttpd. The manipulation of the argument ip leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. |
Tue, 15 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Mon, 14 Jul 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Dlink
Dlink di-500wf Dlink di-500wf Firmware |
|
| CPEs | cpe:2.3:h:dlink:di-500wf:-:*:*:*:*:*:*:* cpe:2.3:o:dlink:di-500wf_firmware:17.04.10a1t:*:*:*:*:*:*:* |
|
| Vendors & Products |
Dlink
Dlink di-500wf Dlink di-500wf Firmware |
Mon, 14 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Tue, 08 Jul 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 08 Jul 2025 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in D-Link DI-500WF 17.04.10A1T. It has been declared as critical. Affected by this vulnerability is the function sprintf of the file ip_position.asp of the component jhttpd. The manipulation of the argument ip leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. | |
| Title | D-Link DI-500WF jhttpd ip_position.asp sprintf stack-based overflow | |
| Weaknesses | CWE-119 CWE-121 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-07-08T20:49:58.352Z
Reserved: 2025-07-07T08:42:20.890Z
Link: CVE-2025-7194
Updated: 2025-07-08T20:49:55.272Z
Status : Analyzed
Published: 2025-07-08T21:15:29.763
Modified: 2025-07-14T15:14:48.423
Link: CVE-2025-7194
No data.
OpenCVE Enrichment
Updated: 2025-07-13T22:31:26Z
EUVD