CVE-2023-43197: Critical severity d-link di-7200g+ firmware vulnerability
Published Sep 20, 2023
·Updated
D-Link device DI-7200GV2.E1 v21.04.09E1 was discovered to contain a stack overflow via the fn parameter in the tgfile.asp function.
Affected Software
2 affected components
Dlink Di-7200g Firmware=21.04.09e1
Dlink Di-7200g=2.e1
Event History
Sep 20, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2023-43197?
The severity of CVE-2023-43197 is critical.
2
How does CVE-2023-43197 affect D-Link device DI-7200GV2.E1 v21.04.09E1?
CVE-2023-43197 affects D-Link device DI-7200GV2.E1 v21.04.09E1 by exploiting a stack overflow vulnerability in the tgfile.asp function.
3
How can I fix the stack overflow vulnerability in D-Link device DI-7200GV2.E1 v21.04.09E1?
To fix the stack overflow vulnerability in D-Link device DI-7200GV2.E1 v21.04.09E1, apply the latest firmware update provided by D-Link.
4
Is D-Link device DI-7200GV2.E1 v21.04.09E1 the only affected software version by CVE-2023-43197?
No, D-Link device DI-7200GV2.E1 v21.04.09E1 is not the only affected software version by CVE-2023-43197. There may be other versions that are also vulnerable.
5
What is the CWE classification of CVE-2023-43197?
The CWE classification of CVE-2023-43197 is CWE-787: Out-of-bounds Write.