CVE-2021-34202

There are multiple out-of-bounds vulnerabilities in some processes of D-Link AC2600(DIR-2640) 1.01B04. Ordinary permissions can be elevated to administrator permissions, resulting in local arbitrary code execution. An attacker can combine other vulnerabilities to further achieve the purpose of remote code execution.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:dlink:dir-2640-us_firmware:1.01b04:*:*:*:*:*:*:*
cpe:2.3:h:dlink:dir-2640-us:-:*:*:*:*:*:*:*

Information

Published : 2021-06-16 19:15

Updated : 2021-06-23 23:10


NVD link : CVE-2021-34202

Mitre link : CVE-2021-34202


JSON object : View

Products Affected

dlink

  • dir-2640-us_firmware
  • dir-2640-us
CWE
CWE-787

Out-of-bounds Write