Critical severity9.8NVD Advisory· Published Feb 25, 2019· Updated Jun 17, 2026
CVE-2019-9125
CVE-2019-9125
Description
An issue was discovered on D-Link DIR-878 1.12B01 devices. Because strncpy is misused, there is a stack-based buffer overflow vulnerability that does not require authentication via the HNAP_AUTH HTTP header.
Affected products
2- cpe:2.3:o:d-link:dir-878_firmware:1.12b01:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
2- github.com/WhooAmii/whooamii.github.io/blob/master/2018/DIR-878/overflow1.mdnvdExploitThird Party Advisory
- github.com/WhooAmii/whooamii.github.io/blob/master/2018/DIR-878/overflow2.mdnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.