ZDI-CAN-18414: ZDI-23-528: D-Link DAP-1360 webproc var:menu Stack-based Buffer Overflow Remote Code Execution Vulnerability
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1360 routers. Authentication is not required to exploit this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-18414?
The severity of ZDI-CAN-18414 is considered critical due to the potential for arbitrary code execution without authentication.
How do I fix ZDI-CAN-18414?
To fix ZDI-CAN-18414, update the D-Link DAP-1360 router firmware to the latest version provided by D-Link.
Who is affected by ZDI-CAN-18414?
ZDI-CAN-18414 affects installations of D-Link DAP-1360 routers that are exposed to network-adjacent attackers.
Can ZDI-CAN-18414 be exploited remotely?
ZDI-CAN-18414 cannot be exploited remotely as it requires network-adjacent access to the affected devices.
What type of vulnerability is ZDI-CAN-18414?
ZDI-CAN-18414 is a vulnerability that allows for arbitrary code execution on affected D-Link DAP-1360 routers.