CVE-2024-13106
CVSS 3.1 Score 5.3 of 10 (medium)
Details
Published Jan 2, 2025
CWE ID 284
CWE ID 266
Summary
CVE-2024-13106 is a critical vulnerability affecting the D-Link DIR-816 A2 1.10CNB05_R1B011D88210. This issue lies in an unknown functionality of the file /goform/form2IPQoSTcAdd within the IP QoS Handler component. The manipulation results in improper access controls, allowing for potential unauthorized access. The vulnerability can be exploited remotely, and the exploit has been made public.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- D-Link Corporation