CVE-2023-45573

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Oct 16, 2023
Updated: Nov 3, 2023
CWE ID 787

Summary

CVE-2023-45573 is a buffer overflow vulnerability affecting multiple D-Link devices, including DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and before, DI-7100GV2.D1 v.23.08.23D1, DI-7200G+V2.D1 v.23.08.23D1 and before, DI-7200GV2.E1 v.23.08.23E1 and before, DI-7300G+V2.D1 v.23.08.23D1, and DI-7400G+V2.D1 v.23.08.23D1 and before. This issue allows remote attackers to execute arbitrary code by exploiting a buffer overflow vulnerability in the mrclfile_del.asp function through the 'n' parameter. Users are strongly advised to update their devices to the latest firmware to mitigate this risk. Failure to do so may result in unauthorized access and potential data breaches.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share