D-Link device DI-7200GV2.E1 v21.04.09E1 was discovered to contain a stack overflow via the hi_up parameter in the qos_ext.asp function.
The product writes data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://www.dlink.com/en/security-bulletin/ | vendor advisory |
https://github.com/Archerber/bug_submit/blob/main/D-Link/DI-7200GV2/bug2.md | third party advisory exploit |