CVE-2006-3687

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
21/07/2006
Last modified:
03/04/2025

Description

Stack-based buffer overflow in the Universal Plug and Play (UPnP) service in D-Link DI-524, DI-604 Broadband Router, DI-624, D-Link DI-784, WBR-1310 Wireless G Router, WBR-2310 RangeBooster G Router, and EBR-2310 Ethernet Broadband Router allows remote attackers to execute arbitrary code via a long M-SEARCH request to UDP port 1900.

Vulnerable products and versions

CPE From Up to
cpe:2.3:h:d-link:di-604_broadband_router:*:*:*:*:*:*:*:*
cpe:2.3:h:d-link:di-784:*:*:*:*:*:*:*:*
cpe:2.3:h:d-link:ebr-2310_ethernet_broadband_router:*:*:*:*:*:*:*:*
cpe:2.3:h:d-link:wbr-1310_wireless_g_router:*:*:*:*:*:*:*:*
cpe:2.3:h:d-link:wbr-2310_rangebooster_g_router:*:*:*:*:*:*:*:*
cpe:2.3:h:dlink:di-524:*:*:*:*:*:*:*:*
cpe:2.3:h:dlink:di-624:*:*:*:*:*:*:*:*