CVE 8.7 HIGH

D-Link DIR-645 hedwig.cgi hedwigcgi_main stack-based overflow_CVE-2026-5815

8.7 / 10
HIGH
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:P

Description

A vulnerability was detected in D-Link DIR-645 1.01/1.02/1.03. Impacted is the function hedwigcgi_main of the file /cgi-bin/hedwig.cgi. The manipulation results in stack-based buffer overflow. The attack can be launched remotely. The exploit is now public and may be used. This vulnerability only affects products that are no longer supported by the maintainer.

Basic Information

ID CVE-2026-5815
Source VulDB
Published Apr 8, 2026 at 23:15

Affected Product

Vendor D-Link
Product DIR-645
Version 1.01
Affected Versions D-Link DIR-645 1.01
D-Link DIR-645 1.02
D-Link DIR-645 1.03

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.