CVE-2024-9561: D-Link DIR-605L formSetWAN_Wizard52 buffer overflow
Published Oct 6, 2024
·Updated
A vulnerability classified as critical has been found in D-Link DIR-605L 2.13B01 BETA. This affects the function formSetWANWizard51/formSetWANWizard52. The manipulation of the argument curTime leads to buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
2 affected components
All of the following
Dlink Dir-605l Firmware=2.13b01
Dlink Dir-605l
Event History
Oct 6, 2024
CVE Published
via MITRE·10:31 PM
Data Sourced
via MITRE·10:31 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·11:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-9561?
CVE-2024-9561 is classified as a critical vulnerability.
2
How do I fix CVE-2024-9561?
To fix CVE-2024-9561, update the D-Link DIR-605L firmware to a patched version released after 2.13B01.
3
What is the impact of CVE-2024-9561?
CVE-2024-9561 allows for a remote buffer overflow due to improper handling of the curTime argument.
4
Which devices are affected by CVE-2024-9561?
CVE-2024-9561 affects the D-Link DIR-605L running firmware version 2.13B01.
5
Can CVE-2024-9561 be exploited remotely?
Yes, CVE-2024-9561 can be exploited remotely by an attacker.