CVE-2024-9568

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Oct 7, 2024
Updated: Oct 9, 2024
CWE ID 120

Summary

CVE-2024-9568 is a critical vulnerability found in the D-Link DIR-619L B1 version 2.06, specifically affecting the formAdvNetwork function within the /goform/formAdvNetwork file. The vulnerability arises from a buffer overflow caused by improper manipulation of the curTime argument, allowing remote attackers to exploit it. This issue poses significant risks to organizations, including potential high impacts on confidentiality, integrity, and availability of affected systems. To remediate this vulnerability, users are advised to update their firmware to the latest version provided by D-Link. Given its low attack complexity and high severity score of 8.8, it is crucial for affected users to act promptly to mitigate potential exploitation.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share