216.73.216.233

CVE-2009-20009

· Published 30/08/2025 14:15 · Modified 30/08/2025 14:15

Labels: CVE-2009-20009 2025-08-30CVE-2009-20009CWE-121[email protected]

Essential information

Published
30/08/2025 14:15
Modified
30/08/2025 14:15
Author
Creator
CVSS
9.3 CRITICAL (v3) 9.3 CRITICAL (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

Belkin Bulldog Plus version 4.0.2 build 1219 contains a stack-based buffer overflow vulnerability in its web service authentication handler. When a specially crafted HTTP request is sent with an oversized Authorization header, the application fails to properly validate the input length before copying it into a fixed-size buffer, resulting in memory corruption and potential remote code execution. Exploitation requires network access and does not require prior authentication.

NVD status

Status
Received — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
belkin / bulldog plus cpe:2.3:a:belkin:bulldog_plus:4.0.2:*:*:*:*:*:*:*

References