CVE-2024-25331

DIR-822 Rev. B Firmware v2.02KRB09 and DIR-822-CA Rev. B Firmware v2.03WWb01 suffer from a LAN-Side Unauthenticated Remote Code Execution (RCE) vulnerability elevated from HNAP Stack-Based Buffer Overflow.
Configurations

No configuration.

History

21 Nov 2024, 09:00

Type Values Removed Values Added
References () https://supportannouncement.us.dlink.com/announcement/publication.aspx?name=SAP10372 - () https://supportannouncement.us.dlink.com/announcement/publication.aspx?name=SAP10372 -
References () https://www.ensigninfosecurity.com/advisories/vulnerability-advisories/2 - () https://www.ensigninfosecurity.com/advisories/vulnerability-advisories/2 -

05 Aug 2024, 15:35

Type Values Removed Values Added
Summary
  • (es) El firmware DIR-822 Rev. B v2.02KRB09 y el firmware DIR-822-CA Rev. B v2.03WWb01 sufren una vulnerabilidad de ejecución remota de código (RCE) no autenticado en el lado LAN elevada por desbordamiento de búfer en la región stack de la memoria HNAP.
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.3
CWE CWE-121

12 Mar 2024, 06:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-03-12 06:15

Updated : 2024-11-21 09:00


NVD link : CVE-2024-25331

Mitre link : CVE-2024-25331

CVE.ORG link : CVE-2024-25331


JSON object : View

Products Affected

No product.

CWE
CWE-121

Stack-based Buffer Overflow