Vulnerability Details CVE-2024-44674
D-Link COVR-2600R FW101b05 is vulnerable to Buffer Overflow. In the function sub_24E28, the HTTP_REFERER is obtained through an environment variable, and this field is controllable, allowing it to be used as the value for src.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 23.6%
CVSS Severity
CVSS v3 Score 5.7
Products affected by CVE-2024-44674
-
cpe:2.3:h:dlink:covr-2600r:-
-
cpe:2.3:o:dlink:covr-2600r_firmware:1.01b05