CVE-2026-90680: D-Link DIR-823G HNAP1 SetStaticRouteSettings strcpy stack-based overflow
A security flaw has been discovered in D-Link DIR-823G 1.0.2B0520181207. The impacted element is the function strcpy of the file /HNAP1/SetStaticRouteSettings of the component HNAP1. The manipulation of the argument PAddress/SubnetMask/Gateway results in stack-based buffer overflow. The attack can be launched remotely.
Affected Software
Event History
Frequently Asked Questions
What access does an attacker need to exploit this issue?
The vulnerability can be exploited remotely over the network and requires low privileges. No user interaction is required.
Which inputs are involved in the overflow?
The stack-based buffer overflow is triggered by manipulating the PAddress, SubnetMask, or Gateway arguments handled by the HNAP1 SetStaticRouteSettings endpoint.
How severe could successful exploitation be?
The supplied severity vector rates the issue as critical at 9.9 and indicates potential high impact to confidentiality, integrity, and availability, with scope change.