CVE-2022-37055

Published Aug 28, 2022

Last updated 9 months ago

Overview

AI description

Automated description summarized from trusted sources.

CVE-2022-37055 is a buffer overflow vulnerability found in D-Link Go-RT-AC750 routers. Specifically, the vulnerability affects versions GORTAC750\_revA\_v101b03 and GO-RT-AC750\_revB\_FWv200b02. The vulnerability is located in the cgibin and hnap_main components of the router's firmware. Due to the buffer overflow, the D-Link routers are vulnerable, which could lead to a high impact on confidentiality, integrity, and availability. It has been added to CISA's Known Exploited Vulnerabilities Catalog, indicating active exploitation. It is recommended to discontinue the use of the product if mitigations are unavailable.

Description
D-Link Go-RT-AC750 GORTAC750_revA_v101b03 and GO-RT-AC750_revB_FWv200b02 are vulnerable to Buffer Overflow via cgibin, hnap_main,
Source
cve@mitre.org
NVD status
Analyzed
Products
go-rt-ac750_firmware

Risk scores

CVSS 3.1

Type
Primary
Base score
9.8
Impact score
5.9
Exploitability score
3.9
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Severity
CRITICAL

Weaknesses

nvd@nist.gov
CWE-120
134c704f-9b21-4f2e-91b3-4a467353bcc0
CWE-120

Social media

Hype score
Not currently trending

Configurations