Security Advisory

CVE-2018-10748

8.8
HIGH

Vulnerability Description

An issue was discovered on D-Link DSL-3782 EU 1.01 devices. An authenticated user can pass a long buffer as a 'show' parameter to the '/userfs/bin/tcapi' binary (in the Diagnostics component) using the 'show ' function and cause memory corruption. Furthermore, it is possible to redirect the flow of the program and execute arbitrary code.
Published Date May 4, 2018
Official Source NIST NVD Advisory