vendor:
DGL5500
by:
Samuel Huntley
8,8
CVSS
HIGH
Buffer overflow in HNAP functionality
119
CWE
Product Name: DGL5500
Affected Version From: Firmware Version: 1.02
Affected Version To: Firmware Version: 1.03
Patch Exists: Yes
Related CWE: None
CPE: h:dlink:dgl5500
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: None
2017
DGL5500 Un-Authenticated Buffer overflow in HNAP functionality
Have come across 1 security issue in DGL5500 firmware which allows an attacker on wireless LAN to exploit buffer overflow vulnerabilitiy in hnap functionality. Does not require any authentication and can be exploited on WAN if the management interface is exposed.
Mitigation:
Update the router firmware to the latest version.