CVE-2024-52759

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Nov 19, 2024
Updated: Nov 22, 2024
CWE ID 120

Summary

CVE-2024-52759 is a newly identified buffer overflow vulnerability that impacts the D-LINK DI-8003 router running firmware version v16.07.26A1. The issue lies within the ip_position_asp function, which fails to adequately validate user input for the ip parameter. An attacker can exploit this vulnerability by crafting a malicious IP address and sending it to the affected device, potentially leading to arbitrary code execution and unauthorized system access. Successful exploitation may result in significant security risks, including data theft, unauthorized network access, or denial-of-service attacks. Users are strongly advised to update their firmware as soon as a patch becomes available to mitigate this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share