Vulnerabilities > D Link > DNS 320Lw Firmware

DATE CVE VULNERABILITY TITLE RISK
2017-08-25 CVE-2014-7859 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in D-Link products
Stack-based buffer overflow in login_mgr.cgi in D-Link firmware DNR-320L and DNS-320LW before 1.04b08, DNR-322L before 2.10 build 03, DNR-326 before 2.10 build 03, and DNS-327L before 1.04b01 allows remote attackers to execute arbitrary code by crafting malformed "Host" and "Referer" header values.
network
low complexity
d-link CWE-119
critical
9.8