Headline
CVE-2023-27077: Router/360D901.md at main · B2eFly/Router
Stack Overflow vulnerability found in 360 D901 allows a remote attacker to cause a Distributed Denial of Service (DDOS) via a crafted HTTP package.
Permalink
0 contributors
Users who have contributed to this file
360 D901 Camera Vulnerability
Vendor: 360
Product: D901
Versoin: Unknow
Link: https://jia.360.cn/
Type: Stack Overflow
1. Vulnerabilty Description
We found a Stack vulnerability in 360 D901, allows remote attackers to DDOS from a crafted request.
Stack Overflow
ln libqcam_web.so
1.1 Get DnsServer Data
1.2 Get resolv.conf Data
1.3 Set BreakPoint
1.4 Review the stack
2. POC
After Send Crafted Package, web_app occurs Segmentation fault