Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rc3j-9c9w-j5qc

Опубликовано: 18 мая 2025
Источник: github
Github: Не прошло ревью
CVSS4: 8.6
CVSS3: 7.2

Описание

A vulnerability was found in D-Link DI-8100 16.07.26A1. It has been declared as critical. This vulnerability affects the function ctxz_asp of the file /ctxz.asp of the component Connection Limit Page. The manipulation of the argument def/defTcp/defUdp/defIcmp/defOther leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

A vulnerability was found in D-Link DI-8100 16.07.26A1. It has been declared as critical. This vulnerability affects the function ctxz_asp of the file /ctxz.asp of the component Connection Limit Page. The manipulation of the argument def/defTcp/defUdp/defIcmp/defOther leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

EPSS

Процентиль: 52%
0.00291
Низкий

8.6 High

CVSS4

7.2 High

CVSS3

Дефекты

CWE-119
CWE-787

Связанные уязвимости

CVSS3: 7.2
nvd
9 месяцев назад

A vulnerability was found in D-Link DI-8100 16.07.26A1. It has been declared as critical. This vulnerability affects the function ctxz_asp of the file /ctxz.asp of the component Connection Limit Page. The manipulation of the argument def/defTcp/defUdp/defIcmp/defOther leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

CVSS3: 7.2
fstec
9 месяцев назад

Уязвимость функции ctxz_asp файла /ctxz.asp компонента Connection Limit Page микропрограммного обеспечения маршрутизаторов D-link DI-8100, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 52%
0.00291
Низкий

8.6 High

CVSS4

7.2 High

CVSS3

Дефекты

CWE-119
CWE-787