CVE-2026-4529

HIGH

D-Link DHP-1320 SOAP redirect_count_down_page stack-based overflow

Title source: cna
STIX 2.1

Description

A vulnerability was identified in D-Link DHP-1320 1.00WWB04. This affects the function redirect_count_down_page of the component SOAP Handler. Such manipulation leads to stack-based buffer overflow. The attack can be executed remotely. The exploit is publicly available and might be used. This vulnerability only affects products that are no longer supported by the maintainer.

References (5)

Core 5
Core References
Product product
https://www.dlink.com/
Vdb Entry, Technical Description vdb-entry technical-description
VDB-352317 | D-Link DHP-1320 SOAP redirect_count_down_page stack-based overflow
https://vuldb.com/?id.352317
Signature, Permissions Required signature permissions-required
VDB-352317 | CTI Indicators (IOB, IOC, IOA)
https://vuldb.com/?ctiid.352317
Third Party Advisory third-party-advisory
Submit #773932 | DLink dhp-1320 A1 v1.00WWB04 Stack-based Buffer Overflow
https://vuldb.com/?submit.773932

Scores

CVSS v3 8.8
EPSS 0.0065
EPSS Percentile 46.2%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact total

Details

CWE
CWE-119 CWE-121
Status published
Products (2)
D-Link/DHP-1320 1.00WWB04
dlink/dhp-1320_firmware 1.00wwb04
Published Mar 21, 2026
Tracked Since Mar 22, 2026