PT-2018-4959 · D Link · D-Link Dir-895L/R+8
Pedro Ribeiro
·
Published
2018-07-13
·
Updated
2019-10-09
·
CVE-2016-6563
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
D-Link DIR routers, including DIR-823, DIR-822, DIR-818L(W), DIR-895L, DIR-890L, DIR-885L, DIR-880L, DIR-868L, and DIR-850L (affected versions not specified)
Description
The issue arises when processing malformed SOAP messages during the HNAP Login action, leading to a buffer overflow in the stack. The vulnerable XML fields within the SOAP body are:
Action, Username, LoginPassword, and Captcha.Recommendations
For all affected D-Link DIR router models, consider disabling the HNAP Login action until a patch is available.
Restrict access to the vulnerable XML fields
Action, Username, LoginPassword, and Captcha to minimize the risk of exploitation.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.Exploit
Stack Overflow
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
D-Link Dir-818Lw
D-Link Dir-822
D-Link Dir-823G
D-Link Dir-850L
D-Link Dir-868L
D-Link Dir-880L
D-Link Dir-885L
D-Link Dir-890L
D-Link Dir-895L/R