DD-WRT DD-WRT: DD-WRT Stack-Based Buffer Overflow Vulnerability

  • Wednesday, 22nd July, 2026
  • 04:02am

A security vulnerability has been identified in DD-WRT, software used in some network devices connected to your hosting setup. The flaw is a stack-based buffer overflow, a type of issue that occurs when a program receives more data than its temporary memory storage can safely handle. This specific vulnerability targets the internal buffer used by UPnP (Universal Plug and Play), a feature that lets devices on the same network automatically find and connect to each other without manual setup. An attacker does not need any login credentials or existing access to your network to exploit this flaw. If successfully triggered, it allows the attacker to run unauthorized code on the affected device. For website owners, this could mean bad actors can intercept traffic between your network and your hosting account, steal sensitive login information, or redirect visitors to your website to harmful content.

Source: CISA Known Exploited Vulnerabilities Catalog — https://nvd.nist.gov/vuln/detail/CVE-2021-27137

« Back