A weakness has been identified in D-Link DIR-513 1.10. The impacted element is the function formEasySetTimezone of the file /goform/formEasySetTimezone of the component boa. This manipulation of the argument curTime causes stack-based buffer overflow. The attack can be initiated remotely. The exploit has been made available to the public and could be used for attacks. This vulnerability only affects products that are no longer supported by the maintainer.
References
| Link | Resource |
|---|---|
| https://github.com/Litengzheng/vul_db/blob/main/Dir513/vul_24/README.md | Exploit Third Party Advisory |
| https://vuldb.com/?ctiid.352382 | Permissions Required VDB Entry |
| https://vuldb.com/?id.352382 | Third Party Advisory VDB Entry |
| https://vuldb.com/?submit.774936 | Third Party Advisory VDB Entry |
| https://www.dlink.com/ | Product |
Configurations
Configuration 1 (hide)
| AND |
|
History
03 Apr 2026, 19:31
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | CWE-787 | |
| Summary |
|
|
| CPE | cpe:2.3:o:dlink:dir-513_firmware:1.10:*:*:*:*:*:*:* cpe:2.3:h:dlink:dir-513:-:*:*:*:*:*:*:* |
|
| First Time |
Dlink dir-513
Dlink dir-513 Firmware Dlink |
|
| References | () https://github.com/Litengzheng/vul_db/blob/main/Dir513/vul_24/README.md - Exploit, Third Party Advisory | |
| References | () https://vuldb.com/?ctiid.352382 - Permissions Required, VDB Entry | |
| References | () https://vuldb.com/?id.352382 - Third Party Advisory, VDB Entry | |
| References | () https://vuldb.com/?submit.774936 - Third Party Advisory, VDB Entry | |
| References | () https://www.dlink.com/ - Product |
22 Mar 2026, 17:17
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-03-22 17:17
Updated : 2026-04-03 19:31
NVD link : CVE-2026-4555
Mitre link : CVE-2026-4555
CVE.ORG link : CVE-2026-4555
JSON object : View
Products Affected
dlink
- dir-513
- dir-513_firmware
