Processing malformed SOAP messages when performing the HNAP Login action causes a buffer overflow in the stack in some D-Link DIR routers. The vulnerable XML fields within the SOAP body are: Action, Username, LoginPassword, and Captcha. The following products are affected: DIR-823, DIR-822, DIR-818L(W), DIR-895L, DIR-890L, DIR-885L, DIR-880L, DIR-868L, and DIR-850L.
2018-07-13T20:29:01.003
2024-11-21T02:56:21.790
Modified
CVSSv3.0: 9.8 (CRITICAL)
AV:N/AC:L/Au:N/C:C/I:C/A:C
10.0
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | dlink | dir-823_firmware | - | Yes |
Hardware | dlink | dir-823 | - | No |
Operating System | dlink | dir-822_firmware | - | Yes |
Hardware | dlink | dir-822 | - | No |
Operating System | dlink | dir-818l\(w\)_firmware | - | Yes |
Hardware | dlink | dir-818l\(w\) | - | No |
Operating System | dlink | dir-895l_firmware | - | Yes |
Hardware | dlink | dir-895l | - | No |
Operating System | dlink | dir-890l_firmware | - | Yes |
Hardware | dlink | dir-890l | - | No |
Operating System | dlink | dir-885l_firmware | - | Yes |
Hardware | dlink | dir-885l | - | No |
Operating System | dlink | dir-880l_firmware | - | Yes |
Hardware | dlink | dir-880l | - | No |
Operating System | dlink | dir-868l_firmware | - | Yes |
Hardware | dlink | dir-868l | - | No |
Operating System | dlink | dir-850l_firmware | - | Yes |
Hardware | dlink | dir-850l | - | No |