// For flags

CVE-2014-4927

ACME micro_httpd - Denial of Service

Severity Score

7.5
*CVSS v3

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

5
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Buffer overflow in ACME micro_httpd, as used in D-Link DSL2750U and DSL2740U and NetGear WGR614 and MR-ADSL-DG834 routers allows remote attackers to cause a denial of service (crash) via a long string in the URI in a GET request.

Desbordamiento de buffer en ACME micro_httpd, utilizado en los routers D-Link DSL2750U y DSL2740U y NetGear WGR614 y MR-ADSL-DG834 permite a atacantes remotos causar una denegación de servicio (caída) a través de una cadena larga en la URI en una solicitud GET.

ACME micro_httpd suffers from a buffer overflow vulnerability that can cause a denial of service.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
None
Integrity
None
Availability
High
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
None
Integrity
None
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2014-07-11 CVE Reserved
  • 2014-07-18 First Exploit
  • 2014-07-19 CVE Published
  • 2024-08-06 CVE Updated
  • 2025-03-30 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
CWE
  • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Acme
Search vendor "Acme"
Micro Httpd
Search vendor "Acme" for product "Micro Httpd"
--
Affected
Dlink
Search vendor "Dlink"
Dsl2740u
Search vendor "Dlink" for product "Dsl2740u"
--
Affected
Dlink
Search vendor "Dlink"
Dsl2750u
Search vendor "Dlink" for product "Dsl2750u"
--
Affected
Netgear
Search vendor "Netgear"
Mr-adsl-dg834
Search vendor "Netgear" for product "Mr-adsl-dg834"
--
Affected
Netgear
Search vendor "Netgear"
Wgr614
Search vendor "Netgear" for product "Wgr614"
v1
Search vendor "Netgear" for product "Wgr614" and version "v1"
-
Affected
Netgear
Search vendor "Netgear"
Wgr614
Search vendor "Netgear" for product "Wgr614"
v2
Search vendor "Netgear" for product "Wgr614" and version "v2"
-
Affected
Netgear
Search vendor "Netgear"
Wgr614
Search vendor "Netgear" for product "Wgr614"
v3
Search vendor "Netgear" for product "Wgr614" and version "v3"
-
Affected
Netgear
Search vendor "Netgear"
Wgr614
Search vendor "Netgear" for product "Wgr614"
v4
Search vendor "Netgear" for product "Wgr614" and version "v4"
-
Affected
Netgear
Search vendor "Netgear"
Wgr614
Search vendor "Netgear" for product "Wgr614"
v5
Search vendor "Netgear" for product "Wgr614" and version "v5"
-
Affected
Netgear
Search vendor "Netgear"
Wgr614
Search vendor "Netgear" for product "Wgr614"
v6
Search vendor "Netgear" for product "Wgr614" and version "v6"
-
Affected
Netgear
Search vendor "Netgear"
Wgr614
Search vendor "Netgear" for product "Wgr614"
v7
Search vendor "Netgear" for product "Wgr614" and version "v7"
-
Affected
Netgear
Search vendor "Netgear"
Wgr614
Search vendor "Netgear" for product "Wgr614"
v8
Search vendor "Netgear" for product "Wgr614" and version "v8"
-
Affected
Netgear
Search vendor "Netgear"
Wgr614
Search vendor "Netgear" for product "Wgr614"
v9
Search vendor "Netgear" for product "Wgr614" and version "v9"
-
Affected