D-Link DIR-815
cpe:2.3:h:d-link:dir-815:*:*:*:*:*:*:*, +3 more
- 1.01
A critical stack-based buffer overflow vulnerability has been identified in the D-Link DIR-815 router, specifically in the hedwig.cgi file, version 1.01. This vulnerability can be exploited remotely, allowing attackers to overwrite the stack and potentially execute arbitrary code.
Exploitation of this vulnerability leads to a stack-based buffer overflow, allowing for arbitrary code execution on the affected device.
To reproduce this vulnerability, send a crafted request to the DIR-815 router's hedwig.cgi script. The request must include parameters that trigger the buffer overflow in the sub_403794 function. This can be done using a proof-of-concept exploit available on GitHub.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.