D-Link DAP-1620 Stack-Based Buffer Overflow Vulnerability

Vulnerability

A critical stack-based buffer overflow vulnerability has been identified in the D-Link DAP-1620 router, specifically in version 1.03. The issue arises in the check_dws_cookie function within the /storage file, where the uid parameter is processed without proper length validation. This vulnerability can be exploited remotely, without authentication, and affects devices that are no longer supported by the manufacturer.

Impact

Exploitation of this vulnerability allows for a stack-based buffer overflow, which could lead to arbitrary code execution or causing the device to crash.

Remediation

It is recommended to use a firewall to block access to the vulnerable function or file.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.3
impact
7.5
exploitability
9.1
remediation
0.0
relevance
0.0
threat
6.4
urgency
2.9
incentive
9.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.