A vulnerability, which was classified as critical, has been found in D-Link DWR-M920 up to 1.1.50. This affects the function sub_423848 of the file /boafrm/formParentControl. Performing manipulation of the argument submit-url results in buffer overflow.

This vulnerability is reported as CVE-2025-15193. The attack is possible to be carried out remotely. Moreover, an exploit is present.