Junglewise Threat Intelligence

CVE-2026-11413: JingDong JD Cloud Box AX6600 stack overflow in set_macfilter

CVE-2026-11413 · Severity: high · CVSS 8.8 · Published 2026-06-06

Executive brief

A security vulnerability has been identified in the JingDong JD Cloud Box AX6600, a wireless router. An attacker can exploit this flaw to gain unauthorized control over the device or cause it to crash, potentially leading to a complete loss of internet connectivity and the exposure of network traffic. This issue is particularly serious because technical details and exploit methods have been made public, though the manufacturer has not yet released a fix.

Technical details

A stack-based buffer overflow vulnerability exists in the JingDong JD Cloud Box AX6600 router, specifically within the 'set_macfilter' function located in the '/sbin/jdcweb_rpc' binary. The flaw is triggered by improper handling of input parameters, allowing an attacker to overwrite the stack memory. This attack can be executed remotely over the network, though it requires low-level authentication (PR:L). Successful exploitation can lead to arbitrary code execution or a denial-of-service (DoS) condition. As of the advisory date, the vendor has not responded to disclosure attempts, and no official patch is available.

Affected products

  • JingDong JD Cloud Box AX6600 4.5.3.r4546

Timeline

  • 2026-06-06: advisory: Vulnerability published on NVD and VulDB
  • 2026-06-06: disclosed: Public disclosure of the exploit

References