Critical severity9.8NVD Advisory· Published Apr 7, 2021· Updated Jun 17, 2026
CVE-2021-26709
CVE-2021-26709
Description
D-Link DSL-320B-D1 devices through EU_1.25 are prone to multiple Stack-Based Buffer Overflows that allow unauthenticated remote attackers to take over a device via the login.xgi user and pass parameters. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:o:d-link:dsl-320b-d1:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:d-link:dsl-320b-d1:*:*:*:*:*:*:*:*range: <=eu_1.25
- (no CPE)range: <=EU_1.25
- D-Link/DSL-320B-D1description
Patches
Vulnerability mechanics
References
4- packetstormsecurity.com/files/162133/D-Link-DSL-320B-D1-Pre-Authentication-Buffer-Overflow.htmlnvdExploitThird Party AdvisoryVDB Entry
- seclists.org/fulldisclosure/2021/Apr/15nvdMailing ListThird Party Advisory
- supportannouncement.us.dlink.com/announcement/publication.aspxnvdVendor Advisory
- www.dlink.com/en/security-bulletinnvdVendor Advisory
News mentions
0No linked articles in our index yet.