CRITICAL · 9.8

CVE-2023-45574

Buffer Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and before, DI-7100GV2.D1 v.23.08.23D1, DI-7200G+V2.D1 v.23.08.23D1 and before, DI-720...

Vulnerability Description

Buffer Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and before, DI-7100GV2.D1 v.23.08.23D1, DI-7200G+V2.D1 v.23.08.23D1 and before, DI-7200GV2.E1 v.23.08.23E1 and before, DI-7300G+V2.D1 v.23.08.23D1, and DI-7400G+V2.D1 v.23.08.23D1 and before allows a remote attacker to execute arbitrary code via the fn parameter of the file.data function.

CVSS Score

9.8

CRITICAL

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
HIGH
Availability
HIGH

Affected Products

VendorProductVersions
DlinkDi-7003G Firmware<= 23.08.25d1
DlinkDi-7003Gv2.d1
DlinkDi-7100G\+ Firmware<= 23.08.23d1
DlinkDi-7100G\+v2.d1
DlinkDi-7100G Firmware<= 23.08.23d1
DlinkDi-7100Gv2.d1
DlinkDi-7200G\+ Firmware<= 23.08.23d1
DlinkDi-7200G\+v2.d1
DlinkDi-7200G Firmware<= 23.08.23e1
DlinkDi-7200Gv2.e1
DlinkDi-7300G\+ Firmware<= 23.08.23d1
DlinkDi-7300G\+v2.d1
DlinkDi-7400G\+ Firmware<= 23.08.23d1
DlinkDi-7400G\+v2.d1

Related Weaknesses (CWE)

References

FAQ

What is CVE-2023-45574?

CVE-2023-45574 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Buffer Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and before, DI-7100GV2.D1 v.23.08.23D1, DI-7200G+V2.D1 v.23.08.23D1 and before, DI-720...

How severe is CVE-2023-45574?

CVE-2023-45574 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.

Is there a patch for CVE-2023-45574?

Check the references section above for vendor advisories and patch information. Affected products include: Dlink Di-7003G Firmware, Dlink Di-7003G, Dlink Di-7100G\+ Firmware, Dlink Di-7100G\+, Dlink Di-7100G Firmware.