CVE-2016-6563
Processing malformed SOAP messages when performing the HNAP Login action causes a buffer overflow in the stack in some D-Link DIR routers. The vulnerable XML fields within the SOAP body are: Action, Username, LoginPassword, and Captcha. The following products are affected: DIR-823, DIR-822, DIR-818L(W), DIR-895L, DIR-890L, DIR-885L, DIR-880L, DIR-868L, and DIR-850L.
- Affected products
- D-Link Dir-818Lw, D-Link Dir-822, D-Link Dir-823G, D-Link Dir-850L, D-Link Dir-868L, D-Link Dir-880L, D-Link Dir-885L, D-Link Dir-890L
- Dlink dir-823 Firmware
- All versions
- CVSS 2.0
- 10.0 HIGH
- CVSS 3.1
- 9.8 CRITICAL
- EPSS
- 79.9% (100th percentile)
- Weakness
- CWE-119, CWE-121
- NVD status
- Modified
- Published
- 2018-07-13
CVE-2016-6563 at NVD
5 known exploits for CVE-2016-6563
Proof-of-concept code and exploit modules indexed by Sploitus
Dlink DIR Routers - Unauthenticated HNAP Login Stack Buffer Overflow (Metasploit) Exploit
D-Link DIR-Series Routers - HNAP Login Stack Buffer Overflow (Metasploit)
Dlink DIR Routers Unauthenticated HNAP Login Stack Buffer Overflow
DLink DIR Routers HNAP Login Stack Buffer Overflow Vulnerability
Dlink DIR Routers Unauthenticated HNAP Login Stack Buffer Overflow