CVE-2024-9785
CVSS 3.1 Score 8.8 of 10 (high)
Details
Summary
CVE-2024-9785 is a critical vulnerability affecting the D-Link DIR-619L B1 version 2.06, specifically in the formSetDDNS function of the /goform/formSetDDNS file, which is susceptible to buffer overflow due to improper handling of the curTime argument. This vulnerability can be exploited remotely with a low level of complexity and does not require user interaction, posing significant risks to an organization's confidentiality, integrity, and availability. The CVSS score for this vulnerability is 8.8, indicating high severity with potential impacts on data security and system reliability. Organizations are advised to remediate the issue by applying any available patches or updates from D-Link's official website. Given its public disclosure, timely action is crucial to mitigate the risks associated with this exploit.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.