D Link · D-Link Dir-878 · CVE-2021-30072
**Name of the Vulnerable Software and Affected Versions**
D-Link DIR-878 version 1.30B08
**Description**
An issue was discovered in `prog.cgi` where the misuse of `strcat` leads to a stack-based buffer overflow. This issue does not require authentication to be exploited.
**Recommendations**
For D-Link DIR-878 version 1.30B08, consider restricting access to the `prog.cgi` until a patch is available. As a temporary workaround, disabling the `prog.cgi` functionality may help minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.