D-Link DIR-513 Stack Buffer Overflow Vulnerability
Vulnerability
A stack buffer overflow vulnerability has been identified in the D-Link DIR-513 router, specifically in version 1.10. The issue arises in the 'goform/formWlanGuestSetup' component, where the 'webPage' parameter can be manipulated to cause the overflow.
Impact
Exploitation of this vulnerability leads to a stack buffer overflow, which can commonly result in arbitrary code execution or causing the device to crash.
Reproduction
The vulnerability can be reproduced by sending a POST request to '/goform/formWlanGuestSetup' with a crafted 'webpage' parameter. The payload should be designed to overflow the buffer, taking advantage of the application's use of 'sprintf' for string formatting.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
