Description
A stack-based buffer overflow vulnerability in the Dbit T-CPE301K 4G WiFi minirouter allows an authenticated attacker to cause a denial of service (DoS) and a system reboot via a manipulated HTTP POST request directed at the endpoint ‘/js/common/do_cmd.js’ endpoint containing an excessively long parameter, which overwrites the PC and RA registers.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
Vendor Solution
No solution has been reported as yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Tue, 29 Sep 2026 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A stack-based buffer overflow vulnerability in the Dbit T-CPE301K 4G WiFi minirouter allows an authenticated attacker to cause a denial of service (DoS) and a system reboot via a manipulated HTTP POST request directed at the endpoint ‘/js/common/do_cmd.js’ endpoint containing an excessively long parameter, which overwrites the PC and RA registers. | |
| Title | Multiple vulnerabilities in the T-CPE301K 4G Mini WiFi Router from Shenzhen Dbit Network Equipment | |
| First Time appeared |
Shenzhen Dbit Network Equipment
Shenzhen Dbit Network Equipment t-cpe301k 4g Mini Wifi Router |
|
| Weaknesses | CWE-121 | |
| CPEs | cpe:2.3:a:shenzhen_dbit_network_equipment:t-cpe301k_4g_mini_wifi_router:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Shenzhen Dbit Network Equipment
Shenzhen Dbit Network Equipment t-cpe301k 4g Mini Wifi Router |
|
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2026-09-29T14:37:35.047Z
Reserved: 2026-04-27T13:40:23.725Z
Link: CVE-2026-7192
No data.
Status : Received
Published: 2026-09-29T13:17:52.447
Modified: 2026-09-29T13:17:52.447
Link: CVE-2026-7192
No data.
OpenCVE Enrichment
No data.
Weaknesses
-
CWE-121
Stack-based Buffer Overflow