CVE-2024-57440

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Mar 20, 2025
Updated: Mar 28, 2025
CWE ID 121

Summary

CVE-2024-57440 represents a buffer overflow vulnerability affecting the D-Link DSL-3788 revA1 1.01R1B036_EU_EN device. This issue is rooted in the COMM_MAKECustomMsg function within the webproc cgi, which can be exploited by malicious actors to overwrite memory beyond the intended boundary. By sending specially crafted data to the affected component, attackers may gain unauthorized control over the system or cause it to behave unexpectedly. This vulnerability poses a potential risk to the security and stability of networks utilizing this particular D-Link device model.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share