CVE-2024-9515
CVSS 3.1 Score 8.8 of 10 (high)
Details
Summary
CVE-2024-9515 is a critical vulnerability affecting the D-Link DIR-605L router, specifically in the formSetQoS function of the /goform/formSetQoS file, which is susceptible to a buffer overflow due to improper handling of the curTime argument. This vulnerability can be exploited remotely without requiring significant privileges, posing a high risk to confidentiality and integrity within affected networks. Organizations using this product are advised to apply patches or updates provided by D-Link to mitigate this risk. The vulnerability has been publicly disclosed, increasing the likelihood of attacks against unpatched devices. The CVSS score for this vulnerability is 8.8, indicating its severity and potential impact on network security.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.