CVE-2017-14948
CRITICALD-Link DIR-868L/880L/885L/890L/895L/895R Firmware - Remote Code Execution via CONTENT_TYPE Header Buffer Overflow
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2017-14948. PoCs published by badnack.
AI-analyzed exploit summary The repository contains a detailed write-up describing buffer overflow vulnerabilities in multiple D-Link router models (DIR-880L, DIR-868L, DIR-890L, DIR-885L, and DIR-895L) due to improper handling of HTTP headers like CONTENT_TYPE and HTTP_COOKIE. The vulnerabilities allow for potential remote code execution (RCE) via crafted HTTP requests.
Description
Certain D-Link products are affected by: Buffer Overflow. This affects DIR-880L 1.08B04 and DIR-895 L/R 1.13b03. The impact is: execute arbitrary code (remote). The component is: htdocs/fileaccess.cgi. The attack vector is: A crafted HTTP request handled by fileacces.cgi could allow an attacker to mount a ROP attack: if the HTTP header field CONTENT_TYPE starts with ''boundary=' followed by more than 256 characters, a buffer overflow would be triggered, potentially causing code execution.
Exploits (1)
The repository contains a detailed write-up describing buffer overflow vulnerabilities in multiple D-Link router models (DIR-880L, DIR-868L, DIR-890L, DIR-885L, and DIR-895L) due to improper handling of HTTP headers like CONTENT_TYPE and HTTP_COOKIE. The vulnerabilities allow for potential remote code execution (RCE) via crafted HTTP requests.
References (1)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H