CVE-2025-50398

Mercury D196G d196gv1-cn-up_2020-01-09_11.21.44 is vulnerable to Buffer Overflow in the function sub_404CAEDC via the parameter fac_password.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:mercurycom:d196g_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mercurycom:d196g:-:*:*:*:*:*:*:*

History

22 Dec 2025, 15:30

Type Values Removed Values Added
References () https://github.com/sezangel/IOT-vul/tree/main/Mercury/D196G/2 - () https://github.com/sezangel/IOT-vul/tree/main/Mercury/D196G/2 - Exploit, Third Party Advisory
CPE cpe:2.3:o:mercurycom:d196g_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mercurycom:d196g:-:*:*:*:*:*:*:*
First Time Mercurycom d196g Firmware
Mercurycom
Mercurycom d196g

17 Dec 2025, 19:16

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
References () https://github.com/sezangel/IOT-vul/tree/main/Mercury/D196G/2 - () https://github.com/sezangel/IOT-vul/tree/main/Mercury/D196G/2 -
CWE CWE-120

16 Dec 2025, 17:16

Type Values Removed Values Added
New CVE

Information

Published : 2025-12-16 17:16

Updated : 2025-12-22 15:30


NVD link : CVE-2025-50398

Mitre link : CVE-2025-50398

CVE.ORG link : CVE-2025-50398


JSON object : View

Products Affected

mercurycom

  • d196g_firmware
  • d196g
CWE
CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')