CNNVD-202510-884 Information

CNNVD ID

CNNVD-202510-884

CVE-2025-11408

  • CNNVD Published: 2025-10-07

Description (Chinese)

D-Link DI-7001 MINI是中国友讯(D-Link)公司的一个多功能智能网关。 D-Link DI-7001 MINI 24.04.18B1版本存在安全漏洞,该漏洞源于对文件/dbsrv.asp中参数str的错误操作,可能导致缓冲区溢出。

Description (English)

D-Link DI-7001 MINI is a multi-purpose smart gateway to the Chinese company D-Link. The D-Link DI-7001 MINI 24.04.18B1 version contains a security loophole, which stems from the error of the argument sstr in the document/dbsrv.asp, which could lead to a spilling out of the buffer zone.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

友讯

Published

2025-10-07

Last Modified

2026-02-24

References

https://github.com/DavCloudz/cve/issues/5 https://vuldb.com/?ctiid.327345 https://vuldb.com/?id.327345 https://vuldb.com/?submit.665474 https://www.dlink.com/ https://access.redhat.com/security/cve/cve-2025-11408

Share on: