CRITICAL🇵🇱 Wersja polska

CVE-2024-48150

CVSS 9.8v3.1pub. 2024-10-14upd. 2025-05-21

D-Link DIR-820L 1.05B03 has a stack overflow vulnerability in the sub_451208 function.

🤖 AI Analysis
How it works

The vulnerability classified as CWE-120 (buffer overflow without size validation) consists of a stack buffer overflow within the sub_451208 function in the router's firmware. An attacker can supply specially crafted input data that exceeds the intended buffer size, overwriting adjacent stack memory areas. Such a mechanism may enable the attacker to gain control over the program's execution flow.

Impact

Successful exploitation of this vulnerability may allow an unauthenticated attacker to execute arbitrary code remotely (RCE) on the device, which may consequently lead to complete takeover of the router, loss of confidentiality, integrity, and availability.

Mitigation & patch

Patches available from the manufacturer should be applied according to the references. If an update is not available, it is recommended to restrict access to the router's management interface exclusively to trusted local networks and disable remote management from the WAN side.

Who is affected

D-Link DIR-820L with firmware version 1.05B03

Analysis generated by Claude AI (Anthropic) based on NVD data. Always verify with vendor.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
  • Dlink Dir 820l

    HW
    Dlink
    all versions
  • Dlink Dir 820l Firmware

    OS
    Dlink
    1.05b03
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
CWE
References

Related vulnerabilities

CVE-2023-25280CRITICAL9.8⚠ KEVPL ✓same product

Command Injection w D-Link DIR-820L umożliwiający eskalację uprawnień do root

CVE-2022-26258CRITICAL9.8⚠ KEVPL ✓same product

RCE w D-Link DIR-820L — command injection przez HTTP POST

CVE-2021-45382CRITICAL9.8⚠ KEVPL ✓same product

RCE w routerach D-Link via DDNS — funkcja w pliku binarnym ncc2

CVE-2015-1187CRITICAL9.8⚠ KEVPL ✓same product

Command Injection w narzędziu ping urządzeń D-Link i TRENDnet — RCE bez uwierzytelnienia

CVE-2023-44808CRITICAL9.8PL ✓same product

D-Link DIR-820L — przepełnienie stosu (stack overflow) w funkcji sub_4507CC