CVE-2024-9535Classic Buffer Overflow in D-link Dir-605l

Severity
8.7HIGHNVD
EPSS
0.3%
top 46.31%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 5

Description

A vulnerability was found in D-Link DIR-605L 2.13B01 BETA. It has been declared as critical. Affected by this vulnerability is the function formEasySetupWWConfig of the file /goform/formEasySetupWWConfig. The manipulation of the argument curTime leads to buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

CVSS vector

CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

Affected Packages2 packages

CVEListV5d-link/dir-605l2.13B01 BETA

🔴Vulnerability Details

2
GHSA
GHSA-j236-j3xx-3rr2: A vulnerability was found in D-Link DIR-605L 22024-10-05
CVEList
D-Link DIR-605L formEasySetupWWConfig buffer overflow2024-10-05

📋Vendor Advisories

1
Apache
Apache nifi: CVE-2024-56512