← Back to browse · API

CVE-2021-27137

Severity
HIGH
CVSS
8.1
EPSS
0.16488
Risk score
63.17
CISA KEV
Yes
PoC
No
Published
2026-07-16
Modified
2026-07-22
First seen
2026-08-05
Aliases
EUVD-2021-34854, GHSA-QX3V-2JX6-8M2C
Products
DD-WRT:DD-WRT, dd-wrt:dd-wrt, embeDD GmbH:DD-WRT 0 <45724
Sources
nvd CVE-2021-27137
cisa.gov CVE-2021-27137
euvd EUVD-2021-34854

Description

An issue was discovered in router/upnp/src/ssdp.c in DD-WRT before 45724. An unsafe strcpy in the UPnP handling functionality allows an unauthenticated remote attacker to send a request that would overflow an internal fixed buffer. Exploitation requires the DD-WRT user to enable UPnP (which is off by default, and only listens on internal interfaces by default). This occurs in ssdp_msearch (reachable by an M-SEARCH request).

References