CVE-2026-90680
9.9D-Link · DIR-823G
A stack-based buffer overflow in the D-Link DIR-823G router allows remote attackers to execute code via the HNAP1 interface.
Executive summary
A critical stack-based buffer overflow vulnerability in D-Link DIR-823G routers allows remote attackers to achieve full system compromise.
Vulnerability
The vulnerability exists due to improper bounds checking in the strcpy function within the /HNAP1/SetStaticRouteSettings file, which handles static route configurations. An authenticated attacker can trigger a stack-based buffer overflow by sending specifically crafted arguments to the PAddress, SubnetMask, or Gateway parameters.
Business impact
The vulnerability carries a critical CVSS score of 9.9, reflecting its potential for complete system compromise. Successful exploitation allows an attacker to gain full control over the network device, potentially facilitating lateral movement, man-in-the-middle attacks, or complete disruption of network traffic for the entire organization.
Remediation
Immediate Action: Since no specific patch version is currently identified, administrators should restrict access to the HNAP1 management interface and monitor the device for unauthorized configuration changes.
Proactive Monitoring: Review device logs for unusual traffic patterns or repeated failed requests directed at the /HNAP1/SetStaticRouteSettings endpoint.
Compensating Controls: Implement strict network segmentation to ensure that only authorized administrative workstations can communicate with the router management interface.
Exploitation status
Public Exploit Available: Yes, a published proof-of-concept exists via the technical write-up referenced in the vulnerability research repository.
Analyst recommendation
Given the critical nature of this vulnerability and the potential for total device takeover, immediate mitigation is required. Organizations using the D-Link DIR-823G should isolate the device from untrusted networks and contact the vendor for guidance on firmware updates, as the lack of a clear patch necessitates prioritizing network-level access controls to prevent unauthorized exploitation.
More D-Link CVEs all →
History
- Disclosed CVE record published
- Collected by CVE Brief via github
- Analyst report written
- Published in the daily brief critical section
Sources
Originally found and disclosed by AmaIIl (VulDB User), per the CVE Program record.
- VDB-403213 | D-Link DIR-823G HNAP1 SetStaticRouteSettings strcpy stack-based overflow Vulnerability database entry
- VDB-403213 | CTI Indicators (IOB, IOC, IOA)
- CVE-2026-90680 | CVE Analysis and Report Third-party advisory
- Submit #914902 | D-Link Router DIR823G_V1.0.2B05_20181207 Memory Corruption Third-party advisory
- Related
- dlink.com