CVE-2022-27631

critical

Description

A memory corruption vulnerability exists in the httpd unescape functionality of DD-WRT Revision 32270 - Revision 48599. A specially-crafted HTTP request can lead to memory corruption. An attacker can send a network request to trigger this vulnerability.

References

https://talosintelligence.com/vulnerability_reports/TALOS-2022-1510

Details

Source: MITRE

Published: 2022-08-05

Updated: 2022-08-11

Type: CWE-787