D-Link DIR-823G
cpe:2.3:h:d-link:dir-823g:*:*:*:*:*:*:*, +2 more
- A1V1.0.2B05
A stack-based buffer overflow vulnerability has been identified in the D-Link DIR-823G A1 v1.0.2B05 router. The issue arises in the FillMacCloneMac parameter of the /EXCU_SHELL endpoint, where excessive data can be sent, leading to a denial-of-service condition. The vulnerability is triggered during the processing of HTTP requests, specifically when the Command1 header is manipulated with overly large input, causing a buffer overflow through string concatenation.
Exploitation of this vulnerability leads to a denial-of-service condition, causing the device to become unresponsive or unavailable.
The vulnerability can be reproduced by sending an HTTP POST request to the /EXCU_SHELL endpoint. The request must include the Command1 header, which should be set to 'FillMacCloneMac' followed by a large payload of repeated characters to overflow the buffer. The response can be monitored for the status code and any returned text to confirm the exploitation attempt.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.