D-Link DI-8100
cpe:2.3:h:dlink:di-8100:*:*:*:*:*:*:*, +1 more
- 16.07.26A1
This vulnerability is being actively exploited in the wild.
A critical stack-based buffer overflow vulnerability has been identified in the D-Link DI-8100 router, specifically in the HTTP request handler component within the file '/jingx.asp'. This vulnerability, present in firmware version 16.07.26A1, can be exploited remotely by sending specially crafted HTTP requests, potentially leading to a denial-of-service condition.
Exploitation of this vulnerability causes a stack-based buffer overflow, which can disrupt the normal operation of the device and may be leveraged to execute arbitrary code.
The vulnerability can be reproduced by sending crafted HTTP requests to the '/jingx.asp' endpoint on a D-Link DI-8100 router running firmware version 16.07.26A1. This can be automated with the available public exploit, which is published on GitHub.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.