Processing malformed SOAP messages when performing the HNAP Login action causes a buffer overflow in the stack in some D-Link DIR routers. The vulnerable XML fields within the SOAP body are: Action, Username, LoginPassword, and Captcha. The following products are affected: DIR-823, DIR-822, DIR-818L(W), DIR-895L, DIR-890L, DIR-885L, DIR-880L, DIR-868L, and DIR-850L.
Subscriptions
| Vendors | Products |
|---|---|
|
Dlink
Subscribe
|
Dir-818l\(w\)
Subscribe
Dir-818l\(w\) Firmware
Subscribe
Dir-822
Subscribe
Dir-822 Firmware
Subscribe
Dir-823
Subscribe
Dir-823 Firmware
Subscribe
Dir-850l
Subscribe
Dir-850l Firmware
Subscribe
Dir-868l
Subscribe
Dir-868l Firmware
Subscribe
Dir-880l
Subscribe
Dir-880l Firmware
Subscribe
Dir-885l
Subscribe
Dir-885l Firmware
Subscribe
Dir-890l
Subscribe
Dir-890l Firmware
Subscribe
Dir-895l
Subscribe
Dir-895l Firmware
Subscribe
|
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 15 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Status: PUBLISHED
Assigner: certcc
Published:
Updated: 2024-08-06T01:36:28.095Z
Reserved: 2016-08-03T00:00:00.000Z
Link: CVE-2016-6563
No data.
Status : Modified
Published: 2018-07-13T20:29:01.003
Modified: 2024-11-21T02:56:21.790
Link: CVE-2016-6563
No data.
OpenCVE Enrichment
No data.