CVE-2023-45579
CVSS 3.1 Score 9.8 of 10 (high)
Details
Summary
CVE-2023-45579 is a Buffer Overflow vulnerability affecting D-Link devices, specifically DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and before, DI-7100GV2.D1 v.23.08.23D1, DI-7200G+V2.D1 v.23.08.23D1 and before, DI-7200GV2.E1 v.23.08.23E1 and before, DI-7300G+V2.D1 v.23.08.23D1, and DI-7400G+V2.D1 v.23.08.23D1 and before models of the devices are affected by this vulnerability which allows a remote attacker to execute arbitrary code by exploiting the ip/type parameter of the jingx.asp function in the device's firmware version prior to specified versions mentioned above (before 2023). The CVSSv3 base score for this vulnerability is 9.8 (Critical), with a high impact on confidentiality, integrity, and availability of the affected devices/systems if compromised remotely over a network connection without requiring any privileges or user interaction needed for exploitation to occur.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Advisories, Assessments, and Mitigations
Prioritize, Pinpoint, and Act to Prevent Vulnerability Exploits with Recorded Future
- Gain complete coverage of your cyber, third party, and physical attack surface
- Proactively mitigate threats before they turn into costly attacks
- Make fast, effective, data-driven decisions