Processing malformed SOAP messages when performing the HNAP Login action causes a buffer overflow in the stack in some D-Link DIR routers. The vulnerable XML fields within the SOAP body are: Action, Username, LoginPassword, and Captcha. The following products are affected: DIR-823, DIR-822, DIR-818L(W), DIR-895L, DIR-890L, DIR-885L, DIR-880L, DIR-868L, and DIR-850L.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Dlink
Subscribe
|
Dir-818l\(w\)
Subscribe
Dir-818l\(w\) Firmware
Subscribe
Dir-822
Subscribe
Dir-822 Firmware
Subscribe
Dir-823
Subscribe
Dir-823 Firmware
Subscribe
Dir-850l
Subscribe
Dir-850l Firmware
Subscribe
Dir-868l
Subscribe
Dir-868l Firmware
Subscribe
Dir-880l
Subscribe
Dir-880l Firmware
Subscribe
Dir-885l
Subscribe
Dir-885l Firmware
Subscribe
Dir-890l
Subscribe
Dir-890l Firmware
Subscribe
Dir-895l
Subscribe
Dir-895l Firmware
Subscribe
|
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 15 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: certcc
Published:
Updated: 2024-08-06T01:36:28.095Z
Reserved: 2016-08-03T00:00:00
Link: CVE-2016-6563
No data.
Status : Modified
Published: 2018-07-13T20:29:01.003
Modified: 2024-11-21T02:56:21.790
Link: CVE-2016-6563
No data.
OpenCVE Enrichment
No data.