First published: Thu Feb 13 2020(Updated: )
A stack-based buffer overflow was found on the D-Link DIR-842 REVC with firmware v3.13B09 HOTFIX due to the use of strcpy for LOGINPASSWORD when handling a POST request to the /MTFWU endpoint.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Dlink Dir-842 Firmware | =3.13b09 | |
Dlink Dir-842 | =c |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2020-8962.
The severity of CVE-2020-8962 is critical, with a severity value of 9.8.
The D-Link DIR-842 REVC with firmware v3.13B09 HOTFIX is affected by CVE-2020-8962.
CVE-2020-8962 exploits a stack-based buffer overflow in the handling of a POST request to the /MTFWU endpoint by using strcpy for LOGINPASSWORD.
No, the D-Link DIR-842 with firmware version 3.13b09 is not vulnerable to CVE-2020-8962.