Stack Overflow Vulnerability in D-Link N300 Wi-Fi Router
CVE-2023-24346

8.8HIGH

Key Information:

Vendor
D-Link
Vendor
CVE Published:
10 February 2023

Summary

A stack overflow vulnerability has been identified in the D-Link N300 Wi-Fi Router model DIR-605L, specifically through the 'wan_connected' parameter at the '/goform/formEasySetupWizard3' endpoint. This flaw could be exploited by attackers, potentially allowing them to execute arbitrary code or cause a Denial of Service on the affected device. Users are encouraged to review the available security updates and implement necessary measures to protect their networks.

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.