Severity
8.7HIGH
EPSS
2.3%
top 15.29%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 28

Description

A vulnerability was found in D-Link DIR-605L 2.13B01. It has been declared as critical. This vulnerability affects the function formSetPortTr of the file /goform/formSetPortTr. The manipulation of the argument curTime leads to buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

CVSS vector

CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

Affected Packages2 packages

CVEListV5d-link/dir-605l2.13B01

🔴Vulnerability Details

2
GHSA
GHSA-39qg-hhmq-h5px: A vulnerability was found in D-Link DIR-605L 22024-11-28
CVEList
D-Link DIR-605L formSetPortTr buffer overflow2024-11-28
CVE-2024-11960 (HIGH CVSS 8.7) | A vulnerability was found in D-Link | cvebase.io