7.8
CVSSv2

CVE-2014-4927

Published: 24/07/2014 Updated: 26/04/2023
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
VMScore: 785
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

Buffer overflow in ACME micro_httpd, as used in D-Link DSL2750U and DSL2740U and NetGear WGR614 and MR-ADSL-DG834 routers allows remote malicious users to cause a denial of service (crash) via a long string in the URI in a GET request.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

netgear wgr614 v1

netgear wgr614 v9

netgear wgr614 v3

netgear wgr614 v8

netgear wgr614 v2

acme micro httpd -

netgear wgr614 v4

netgear wgr614 v7

netgear wgr614 v6

netgear mr-adsl-dg834 -

netgear wgr614 v5

dlink dsl2750u -

dlink dsl2740u -

Exploits

""" # Exploit Title: Buffer Overflow in micro_httpd by ACME # Date: 4/7/2014 # Exploit Author: Yuval tisf Nativ # Vendor Homepage: wwwacmecom/software/micro_httpd/ # Software Link: wwwacmecom/software/micro_httpd/ # Version: June 2012 # CVE: CVE-2014-4927 # Tested on: D-Link: (DSL2750U, DSL2740U), NetGear: (WGR614, MR-ADSL-DG834) ...
ACME micro_httpd suffers from a buffer overflow vulnerability that can cause a denial of service ...