← 戻る
CVE-2026-5612
high
CVSS 8.8
A vulnerability was determined in Belkin F9K1015 1.00.10. This vulnerability affects the function formWlEncrypt of the file /goform/formWlEncrypt. Executing a manipulation of the argument webpage can...
概要
A vulnerability was determined in Belkin F9K1015 1.00.10. This vulnerability affects the function formWlEncrypt of the file /goform/formWlEncrypt. Executing a manipulation of the argument webpage can lead to stack-based buffer overflow. The attack can be launched remotely. The exploit has been publi...
AI要約 openai / gpt-4o
Belkin F9K1015 1.00.10における脆弱性は、/goform/formWlEncryptのformWlEncrypt関数に影響し、webpage引数の操作を通じてスタックベースのバッファオーバーフローを引き起こす可能性があります。この攻撃はリモートで実行可能であり、エクスプロイトが公開されています。ベンダーへの連絡はありましたが応答はありませんでした。
❓ 何が問題か
Belkin F9K1015 1.00.10におけるスタックベースのバッファオーバーフローの脆弱性です。
📍 影響範囲
/goform/formWlEncryptのformWlEncrypt関数に影響。
🔥 重要度
リモートで攻撃可能で、エクスプロイトが公開されており、高リスクです。
🔧 修正方法
ベンダーからの正式なパッチを待つか、該当する関数のコードを見直し、入力バリデーションを強化する必要があります。
🛡️ 暫定回避
現在、効果的な回避策は公表されていません。
🔍 検知方法
ネットワークログを監視し、異常なリクエストがあるかをチェックすることで脆弱性の利用の検出を試みることができます。
参照URL
- advisory [email protected]
- advisory [email protected]
- exploit [email protected]
- web [email protected]