CVE-2024-9556 Information

Description

A vulnerability which was classified as critical was found in D-Link DIR-605L 2.13B01 BETA. This affects the function formSetEnableWizard of the file /goform/formSetEnableWizard. The manipulation of the argument curTime leads to buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

Reference

https://vuldb.com/?id.279363 https://vuldb.com/?ctiid.279363 https://vuldb.com/?submit.413915 https://github.com/abcdefg-png/IoT-vulnerable/blob/main/D-Link/DIR-605L/formSetEnableWizard.md https://www.dlink.com/

Share on: