Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4fj3-xj7w-f7cv

Опубликовано: 17 дек. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

A NULL pointer dereference in D-Link DAP-1513 REVA_FIRMWARE_1.01 allows attackers to cause a Denial of Service (DoS) via a crafted web request without authentication. The vulnerability occurs in the /bin/webs binary of the firmware. When /bin/webs receives a carefully constructed HTTP request, it will crash and exit due to a null pointer reference, leading to a denial of service attack to the device.

A NULL pointer dereference in D-Link DAP-1513 REVA_FIRMWARE_1.01 allows attackers to cause a Denial of Service (DoS) via a crafted web request without authentication. The vulnerability occurs in the /bin/webs binary of the firmware. When /bin/webs receives a carefully constructed HTTP request, it will crash and exit due to a null pointer reference, leading to a denial of service attack to the device.

EPSS

Процентиль: 57%
0.00353
Низкий

7.5 High

CVSS3

Дефекты

CWE-476

Связанные уязвимости

CVSS3: 7.5
nvd
около 1 года назад

A NULL pointer dereference in D-Link DAP-1513 REVA_FIRMWARE_1.01 allows attackers to cause a Denial of Service (DoS) via a crafted web request without authentication. The vulnerability occurs in the /bin/webs binary of the firmware. When /bin/webs receives a carefully constructed HTTP request, it will crash and exit due to a null pointer reference, leading to a denial of service attack to the device.

CVSS3: 7.5
fstec
больше 1 года назад

Уязвимость файла /bin/webs микропрограммного обеспечения беспроводных точек доступа D-Link DAP-1513, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 57%
0.00353
Низкий

7.5 High

CVSS3

Дефекты

CWE-476