Vulnerability Details CVE-2006-3687
Stack-based buffer overflow in the Universal Plug and Play (UPnP) service in D-Link DI-524, DI-604 Broadband Router, DI-624, D-Link DI-784, WBR-1310 Wireless G Router, WBR-2310 RangeBooster G Router, and EBR-2310 Ethernet Broadband Router allows remote attackers to execute arbitrary code via a long M-SEARCH request to UDP port 1900.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.208
EPSS Ranking 95.3%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2006-3687
-
cpe:2.3:h:d-link:di-604_broadband_router:*
-
cpe:2.3:h:d-link:di-784:*
-
cpe:2.3:h:d-link:ebr-2310_ethernet_broadband_router:*
-
cpe:2.3:h:d-link:wbr-1310_wireless_g_router:*
-
cpe:2.3:h:d-link:wbr-2310_rangebooster_g_router:*
-
-