CVE-2025-7087 | Belkin F9K1122 1.00.33 webs /goform/formL2TPSetup L2TPUserName stack-based overflow (EUVD-2025-20146)
A vulnerability classified as critical was found in Belkin F9K1122 1.00.33. Affected by this vulnerability is the function formL2TPSetup of the file /goform/formL2TPSetup of the component webs. The manipulation of the argument L2TPUserName leads to stack-based buffer overflow.
This vulnerability is known as CVE-2025-7087. The attack can be launched remotely. Furthermore, there is an exploit available.
The vendor was contacted early about this disclosure but did not respond in any way.