Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-65288

Опубликовано: 09 дек. 2025
Источник: nvd
CVSS3: 6.5
EPSS Низкий

Описание

A buffer overflow in the Mercury MR816v2 (081C3114 4.8.7 Build 110427 Rel 36550n) occurs when the device accepts and stores excessively long hostnames from LAN hosts without proper length validation. The affected code performs unchecked copies/concatenations into fixed-size buffers. A crafted long hostname can overflow the buffer, cause a crash (DoS) and potentially enabling remote code execution.

Ссылки

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:mercurycom:mr816_firmware:081c3114_4.8.7:build_110427:*:*:*:*:*:*
cpe:2.3:h:mercurycom:mr816:2.0:*:*:*:*:*:*:*

EPSS

Процентиль: 25%
0.00084
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-120

Связанные уязвимости

CVSS3: 6.5
github
2 месяца назад

A buffer overflow in the Mercury MR816v2 (081C3114 4.8.7 Build 110427 Rel 36550n) occurs when the device accepts and stores excessively long hostnames from LAN hosts without proper length validation. The affected code performs unchecked copies/concatenations into fixed-size buffers. A crafted long hostname can overflow the buffer, cause a crash (DoS) and potentially enabling remote code execution.

EPSS

Процентиль: 25%
0.00084
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-120