CVE-2024-37607

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Dec 17, 2024
CWE ID 120

Summary

CVE-2024-37607 is a buffer overflow vulnerability affecting the D-Link DAP-2555 REVA with firmware version 1.20. This issue allows remote attackers to send a specially crafted HTTP request, leading to a denial of service condition on the affected device. The buffer overflow occurs due to insufficient bounds checking on input data, enabling attackers to inject malicious data and overwrite memory. This vulnerability poses a significant risk as it can cause the device to become unresponsive, impacting network connectivity and functionality.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share