CVE-2026-4555: D-Link DIR-513 boa formEasySetTimezone memory corruption
A weakness has been identified in D-Link DIR-513 1.10. The impacted element is the function formEasySetTimezone of the file /goform/formEasySetTimezone of the component boa. This manipulation of the argument curTime causes stack-based buffer overflow. The attack can be initiated remotely. The exploit has been made available to the public and could be used for attacks. This vulnerability only affects products that are no longer supported by the maintainer.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-4555?
CVE-2026-4555 has a high severity rating due to its potential for causing memory corruption vulnerabilities.
How do I fix CVE-2026-4555?
To address CVE-2026-4555, upgrade the D-Link DIR-513 firmware to the latest version that resolves this vulnerability.
What impact does CVE-2026-4555 have on my D-Link DIR-513?
CVE-2026-4555 can allow remote attackers to execute arbitrary code via crafted requests that exploit the memory corruption flaw.
Which version of D-Link DIR-513 is affected by CVE-2026-4555?
CVE-2026-4555 specifically affects version 1.10 of the D-Link DIR-513.
Is there a workaround for CVE-2026-4555?
Currently, there is no recommended workaround other than applying the firmware update for CVE-2026-4555.