CVE-2024-9785: D-Link DIR-619L B1 formSetDDNS buffer overflow
Published Oct 10, 2024
·Updated
A vulnerability classified as critical was found in D-Link DIR-619L B1 2.06. Affected by this vulnerability is the function formSetDDNS of the file /goform/formSetDDNS. The manipulation of the argument curTime leads to buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
2 affected components
All of the following
Dlink Dir-619l Firmware=2.06b1
Dlink Dir-619l=b1
Event History
Oct 10, 2024
CVE Published
via MITRE·01:00 PM
Data Sourced
via MITRE·01:00 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·01:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-9785?
CVE-2024-9785 is classified as a critical vulnerability.
2
How do I fix CVE-2024-9785?
To fix CVE-2024-9785, update the D-Link DIR-619L firmware to the latest version.
3
What is the impact of CVE-2024-9785?
CVE-2024-9785 can allow an attacker to execute a remote buffer overflow attack.
4
Which devices are affected by CVE-2024-9785?
CVE-2024-9785 affects the D-Link DIR-619L router running firmware version 2.06b1.
5
Can CVE-2024-9785 be exploited remotely?
Yes, CVE-2024-9785 can be exploited remotely without requiring physical access.