CVE-2024-11960: D-Link DIR-605L formSetPortTr buffer overflow
Published Nov 28, 2024
·Updated
A vulnerability was found in D-Link DIR-605L 2.13B01. It has been declared as critical. This vulnerability affects the function formSetPortTr of the file /goform/formSetPortTr. The manipulation of the argument curTime leads to buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
2 affected components
All of the following
Dlink Dir-605l Firmware=2.13b01
Dlink Dir-605l
Event History
Nov 28, 2024
CVE Published
via MITRE·02:31 PM
Data Sourced
via MITRE·02:31 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-11960?
CVE-2024-11960 has been declared as critical.
2
How does CVE-2024-11960 affect D-Link DIR-605L devices?
CVE-2024-11960 affects the function formSetPortTr, leading to a buffer overflow vulnerability.
3
Can CVE-2024-11960 be exploited remotely?
Yes, the attack can be initiated remotely.
4
What version of D-Link DIR-605L firmware is affected by CVE-2024-11960?
CVE-2024-11960 affects D-Link DIR-605L firmware version 2.13B01.
5
What is the impact of CVE-2024-11960 on network security?
The vulnerability could allow remote attackers to exploit the device and potentially take control.