D-Link COVR-2600R FW101b05 is vulnerable to Buffer Overflow. In the function sub_24E28, the HTTP_REFERER is obtained through an environment variable, and this field is controllable, allowing it to be used as the value for src.
References
Configurations
No configuration.
History
10 Oct 2024, 12:57
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
07 Oct 2024, 20:35
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.7 |
CWE | CWE-121 |
07 Oct 2024, 18:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-10-07 18:15
Updated : 2024-10-10 12:57
NVD link : CVE-2024-44674
Mitre link : CVE-2024-44674
CVE.ORG link : CVE-2024-44674
JSON object : View
Products Affected
No product.
CWE
CWE-121
Stack-based Buffer Overflow