// For flags

CVE-2024-7831

D-Link DNS-1550-04 photocenter_mgr.cgi cgi_get_cooliris buffer overflow

Severity Score

8.7
*CVSS v4

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

1
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

Attend
*SSVC
Descriptions

A vulnerability has been found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-343, DNS-345, DNS-726-4, DNS-1100-4, DNS-1200-05 and DNS-1550-04 up to 20240814 and classified as critical. Affected by this vulnerability is the function cgi_get_cooliris of the file /cgi-bin/photocenter_mgr.cgi. The manipulation of the argument path leads to buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. NOTE: This vulnerability only affects products that are no longer supported by the maintainer. NOTE: Vendor was contacted early and confirmed that the product is end-of-life. It should be retired and replaced.

In D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-343, DNS-345, DNS-726-4, DNS-1100-4, DNS-1200-05 and DNS-1550-04 bis 20240814 wurde eine Schwachstelle gefunden. Sie wurde als kritisch eingestuft. Hierbei betrifft es die Funktion cgi_get_cooliris der Datei /cgi-bin/photocenter_mgr.cgi. Durch Manipulation des Arguments path mit unbekannten Daten kann eine buffer overflow-Schwachstelle ausgenutzt werden. Umgesetzt werden kann der Angriff über das Netzwerk. Der Exploit steht zur öffentlichen Verfügung.

** UNSUPPORTED WHEN ASSIGNED ** A vulnerability has been found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-343, DNS-345, DNS-726-4, DNS-1100-4, DNS-1200-05 and DNS-1550-04 up to 20240814 and classified as critical. Affected by this vulnerability is the function cgi_get_cooliris of the file /cgi-bin/photocenter_mgr.cgi. The manipulation of the argument path leads to buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. NOTE: This vulnerability only affects products that are no longer supported by the maintainer. NOTE: Vendor was contacted early and confirmed that the product is end-of-life. It should be retired and replaced.

*Credits: BuaaI0TTeam
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Attack Requirements
None
Privileges Required
Low
User Interaction
None
System
Vulnerable | Subsequent
Confidentiality
High
None
Integrity
High
None
Availability
High
None
Attack Vector
Network
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Attack Vector
Network
Attack Complexity
Low
Authentication
Single
Confidentiality
Complete
Integrity
Complete
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:Attend
Exploitation
Poc
Automatable
No
Tech. Impact
Total
* Organization's Worst-case Scenario
Timeline
  • 2024-08-15 CVE Reserved
  • 2024-08-15 CVE Published
  • 2024-08-15 CVE Updated
  • 2024-08-15 First Exploit
  • 2024-08-20 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
CWE
  • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Dlink
Search vendor "Dlink"
Dnr-202l
Search vendor "Dlink" for product "Dnr-202l"
*-
Affected
Dlink
Search vendor "Dlink"
Dnr-322l
Search vendor "Dlink" for product "Dnr-322l"
*-
Affected
Dlink
Search vendor "Dlink"
Dnr-326
Search vendor "Dlink" for product "Dnr-326"
*-
Affected
Dlink
Search vendor "Dlink"
Dns-1100-4
Search vendor "Dlink" for product "Dns-1100-4"
*-
Affected
Dlink
Search vendor "Dlink"
Dns-1200-05
Search vendor "Dlink" for product "Dns-1200-05"
*-
Affected
Dlink
Search vendor "Dlink"
Dns-120
Search vendor "Dlink" for product "Dns-120"
*-
Affected
Dlink
Search vendor "Dlink"
Dns-1550-04
Search vendor "Dlink" for product "Dns-1550-04"
*-
Affected
Dlink
Search vendor "Dlink"
Dns-315l
Search vendor "Dlink" for product "Dns-315l"
*-
Affected
Dlink
Search vendor "Dlink"
Dns-320
Search vendor "Dlink" for product "Dns-320"
*-
Affected
Dlink
Search vendor "Dlink"
Dns-320l
Search vendor "Dlink" for product "Dns-320l"
*-
Affected
Dlink
Search vendor "Dlink"
Dns-320lw
Search vendor "Dlink" for product "Dns-320lw"
*-
Affected
Dlink
Search vendor "Dlink"
Dns-321
Search vendor "Dlink" for product "Dns-321"
*-
Affected
Dlink
Search vendor "Dlink"
Dns-323
Search vendor "Dlink" for product "Dns-323"
*-
Affected
Dlink
Search vendor "Dlink"
Dns-325
Search vendor "Dlink" for product "Dns-325"
*-
Affected
Dlink
Search vendor "Dlink"
Dns-326
Search vendor "Dlink" for product "Dns-326"
*-
Affected
Dlink
Search vendor "Dlink"
Dns-327l
Search vendor "Dlink" for product "Dns-327l"
*-
Affected
Dlink
Search vendor "Dlink"
Dns-340l
Search vendor "Dlink" for product "Dns-340l"
*-
Affected
Dlink
Search vendor "Dlink"
Dns-343
Search vendor "Dlink" for product "Dns-343"
*-
Affected
Dlink
Search vendor "Dlink"
Dns-345
Search vendor "Dlink" for product "Dns-345"
*-
Affected
Dlink
Search vendor "Dlink"
Dns-726-4
Search vendor "Dlink" for product "Dns-726-4"
*-
Affected
Dlink
Search vendor "Dlink"
Dnr-202l Firmware
Search vendor "Dlink" for product "Dnr-202l Firmware"
*-
Affected
Dlink
Search vendor "Dlink"
Dnr-322l Firmware
Search vendor "Dlink" for product "Dnr-322l Firmware"
*-
Affected
Dlink
Search vendor "Dlink"
Dnr-326 Firmware
Search vendor "Dlink" for product "Dnr-326 Firmware"
*-
Affected
Dlink
Search vendor "Dlink"
Dns-1100-4 Firmware
Search vendor "Dlink" for product "Dns-1100-4 Firmware"
*-
Affected
Dlink
Search vendor "Dlink"
Dns-1200-05 Firmware
Search vendor "Dlink" for product "Dns-1200-05 Firmware"
*-
Affected
Dlink
Search vendor "Dlink"
Dns-120 Firmware
Search vendor "Dlink" for product "Dns-120 Firmware"
*-
Affected
Dlink
Search vendor "Dlink"
Dns-1550-04 Firmware
Search vendor "Dlink" for product "Dns-1550-04 Firmware"
*-
Affected
Dlink
Search vendor "Dlink"
Dns-315l Firmware
Search vendor "Dlink" for product "Dns-315l Firmware"
*-
Affected
Dlink
Search vendor "Dlink"
Dns-320 Firmware
Search vendor "Dlink" for product "Dns-320 Firmware"
*-
Affected
Dlink
Search vendor "Dlink"
Dns-320l Firmware
Search vendor "Dlink" for product "Dns-320l Firmware"
*-
Affected
Dlink
Search vendor "Dlink"
Dns-320lw Firmware
Search vendor "Dlink" for product "Dns-320lw Firmware"
*-
Affected
Dlink
Search vendor "Dlink"
Dns-321 Firmware
Search vendor "Dlink" for product "Dns-321 Firmware"
*-
Affected
Dlink
Search vendor "Dlink"
Dns-323 Firmware
Search vendor "Dlink" for product "Dns-323 Firmware"
*-
Affected
Dlink
Search vendor "Dlink"
Dns-325 Firmware
Search vendor "Dlink" for product "Dns-325 Firmware"
*-
Affected
Dlink
Search vendor "Dlink"
Dns-326 Firmware
Search vendor "Dlink" for product "Dns-326 Firmware"
*-
Affected
Dlink
Search vendor "Dlink"
Dns-327l Firmware
Search vendor "Dlink" for product "Dns-327l Firmware"
*-
Affected
Dlink
Search vendor "Dlink"
Dns-340l Firmware
Search vendor "Dlink" for product "Dns-340l Firmware"
*-
Affected
Dlink
Search vendor "Dlink"
Dns-343 Firmware
Search vendor "Dlink" for product "Dns-343 Firmware"
*-
Affected
Dlink
Search vendor "Dlink"
Dns-345 Firmware
Search vendor "Dlink" for product "Dns-345 Firmware"
*-
Affected
Dlink
Search vendor "Dlink"
Dns-726-4 Firmware
Search vendor "Dlink" for product "Dns-726-4 Firmware"
*-
Affected
* End Of Life in some or all products. Do not expect updates.