vendor:
DG-BR4000NG Wireless Router
by:
Adipta Basu
9.8
CVSS
CRITICAL
Buffer Overflow
120
CWE
Product Name: DG-BR4000NG Wireless Router
Affected Version From: DIGISOL DG-BR4000NG Wireless Router
Affected Version To: DIGISOL DG-BR4000NG Wireless Router
Patch Exists: YES
Related CWE: CVE-2018-12706
CPE: h:digisol:dg-br4000ng_wireless_router
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Mac OS High Sierra
2018
DIGISOL DG-BR4000NG – Buffer Overflow (PoC)
A buffer overflow vulnerability exists in the DIGISOL DG-BR4000NG Wireless Router. An attacker can exploit this vulnerability by sending a crafted request with a string of 500 ì0îs after the Authorization Basic string to the router's web interface. This will cause the router to restart and the web interface to become faulty.
Mitigation:
Users should update their router to the latest version to mitigate this vulnerability.