CVE-2025-3785 | D-Link DWR-M961 1.1.36 Authorization Interface /boafrm/formStaticDHCP Hostname stack-based overflow
A vulnerability has been found in D-Link DWR-M961 1.1.36 and classified as critical. This vulnerability affects unknown code of the file /boafrm/formStaticDHCP of the component Authorization Interface. The manipulation of the argument Hostname leads to stack-based buffer overflow.
This vulnerability was named CVE-2025-3785. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.