PT-2014-4265 · Belkin · Belkin N750 Router

Marco Vaz

·

Published

2014-11-12

·

Updated

2016-03-31

·

CVE-2014-1635

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Belkin N750 Router with firmware before F9K1103 WW 1.10.17m
Description The issue is related to a buffer overflow in the login.cgi of MiniHttpd. This can be exploited by remote attackers to execute arbitrary code via a long string in the jump parameter.
Recommendations For Belkin N750 Router with firmware before F9K1103 WW 1.10.17m, update the firmware to version F9K1103 WW 1.10.17m or later to resolve the issue. As a temporary workaround, consider restricting access to the login.cgi page to minimize the risk of exploitation.

Exploit

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2014-1635

Affected Products

Belkin N750 Router