Vulnerability Details CVE-2021-43722
D-Link DIR-645 1.03 A1 is vulnerable to Buffer Overflow. The hnap_main function in the cgibin handler uses sprintf to format the soapaction header onto the stack and has no limit on the size.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.032
EPSS Ranking 87.1%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 7.5
Products affected by CVE-2021-43722
-
cpe:2.3:h:dlink:dir-645:a1
-
cpe:2.3:o:dlink:dir-645_firmware:1.03