CVE-2021-33266: Buffer Overflow
D-Link DIR-809 devices with firmware through DIR-809AxFW1.12WWB0320190410 were discovered to contain a stack buffer overflow vulnerability in the function FUN8004776c in /formVirtualApp. This vulnerability is triggered via a crafted POST request.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this D-Link DIR-809 firmware vulnerability?
The vulnerability ID for this D-Link DIR-809 firmware vulnerability is CVE-2021-33266.
What is the severity of CVE-2021-33266?
The severity of CVE-2021-33266 is critical with a score of 9.8.
How does this vulnerability affect D-Link DIR-809 devices?
This vulnerability affects D-Link DIR-809 devices with firmware through DIR-809Ax_FW1.12WWB03.
How is this vulnerability triggered?
This vulnerability is triggered via a crafted POST request.
Are there any references for this vulnerability?
Yes, there are references available for this vulnerability. You can refer to the following links: [GitHub](https://github.com/Lnkvct/IoT-poc/tree/master/D-Link-DIR809/vuln04) and [D-Link Security Bulletin](https://www.dlink.com/en/security-bulletin/).