CVE-2019-9125

An issue was discovered on D-Link DIR-878 1.12B01 devices. Because strncpy is misused, there is a stack-based buffer overflow vulnerability that does not require authentication via the HNAP_AUTH HTTP header.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:d-link:dir-878_firmware:1.12b01:*:*:*:*:*:*:*
cpe:2.3:h:d-link:dir-878:-:*:*:*:*:*:*:*

Information

Published : 2019-02-24 21:29

Updated : 2020-08-24 10:37


NVD link : CVE-2019-9125

Mitre link : CVE-2019-9125


JSON object : View

CWE
CWE-787

Out-of-bounds Write

CWE-306

Missing Authentication for Critical Function

Advertisement

dedicated server usa

Products Affected

d-link

  • dir-878_firmware
  • dir-878