CVE-2024-9555: D-Link DIR-605L formSetEasy_Wizard buffer overflow
Published Oct 6, 2024
·Updated
A vulnerability, which was classified as critical, has been found in D-Link DIR-605L 2.13B01 BETA. Affected by this issue is the function formSetEasyWizard of the file /goform/formSetEasyWizard. The manipulation of the argument curTime leads to buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
2 affected components
All of the following
Dlink Dir-605l Firmware=2.13b01
Dlink Dir-605l
Event History
Oct 6, 2024
CVE Published
via MITRE·02:31 PM
Data Sourced
via MITRE·02:31 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-9555?
CVE-2024-9555 is classified as a critical vulnerability.
2
What are the affected devices for CVE-2024-9555?
CVE-2024-9555 affects the D-Link DIR-605L firmware version 2.13B01.
3
What is the nature of the vulnerability CVE-2024-9555?
CVE-2024-9555 is a buffer overflow vulnerability found in the formSetEasy_Wizard function.
4
How do I fix CVE-2024-9555?
To fix CVE-2024-9555, update the D-Link DIR-605L firmware to a patched version.
5
What can happen if CVE-2024-9555 is exploited?
Exploitation of CVE-2024-9555 may allow an attacker to execute arbitrary code.