D-Link DCS-8300LHV2 ONVIF Duration Stack-Based Buffer Overflow Remote Code Execution Vulnerability
CVE-2023-51627
8HIGH
What is CVE-2023-51627?
The D-Link DCS-8300LHV2 IP camera is impacted by a stack-based buffer overflow vulnerability, allowing network-adjacent attackers to execute arbitrary code. The flaw originates from improper validation of the length of user-supplied data in Duration XML elements, which leads to the potential bypassing of authentication mechanisms. Successful exploitation of this vulnerability can enable attackers to execute code with root privileges, posing significant security risks for deployed devices.