D-Link DIR-619L B1 formResetStatistic buffer overflow
Published Oct 10, 2024
8.7
HIGHCVSS 4.0
EPSS 0.98%
Description
A vulnerability classified as critical has been found in D-Link DIR-619L B1 2.06. Affected is the function formResetStatistic of the file /goform/formResetStatistic. The manipulation of the argument curTime leads to buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Affected products
-
Affected
- 2.06
Default status is the baseline for the product. Each version can override it (patched versions can be marked unaffected).
| Vendor | Product | Default status | Versions |
|---|---|---|---|
| D-Link | Dir-619l B1 | unknown | Affected
|
- 2.06
-
Affected
- 2.06
Default status is the baseline for the product. Each version can override it (patched versions can be marked unaffected).
| Vendor | Product | Default status | Versions |
|---|---|---|---|
| D-Link | Dir-619l B1 | unknown | Affected
|
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (6)
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2024-50111 Advisory
- https://github.com/abcdefg-png/IoT-vulnerable/blob/main/D-Link/DIR-619L/formResetStatistic.md exploit
- https://vuldb.com/?ctiid.279936 signaturepermissions-requiredPermissions Required
- https://vuldb.com/?id.279936 vdb-entrytechnical-descriptionPermissions Required
- https://vuldb.com/?submit.414552 third-party-advisoryThird Party Advisory
- https://www.dlink.com/ product
| Link | Providers | Tags |
|---|---|---|
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2024-50111 | Advisory | |
| https://github.com/abcdefg-png/IoT-vulnerable/blob/main/D-Link/DIR-619L/formResetStatistic.md | exploit | |
| https://vuldb.com/?ctiid.279936 | signaturepermissions-requiredPermissions Required | |
| https://vuldb.com/?id.279936 | vdb-entrytechnical-descriptionPermissions Required | |
| https://vuldb.com/?submit.414552 | third-party-advisoryThird Party Advisory | |
| https://www.dlink.com/ | product |
Change history (0)
No recorded changes yet.
CVE.org / MITRE
CISA Vulnrichment
Red Hat
No data
GitHub
No data