{ "id": "CVE-2024-44333", "sourceIdentifier": "cve@mitre.org", "published": "2024-09-09T17:15:13.120", "lastModified": "2024-09-09T18:30:12.050", "vulnStatus": "Awaiting Analysis", "cveTags": [], "descriptions": [ { "lang": "en", "value": "D-Link DI-7003GV2 v24.04.18D1, DI-7100G+V2 v24.04.18D1, DI-7100GV2 v24.04.18D1, DI-7200GV2 v24.04.18E1, DI-7300G+V2 v24.04.18D1, and DI-7400G+V2 v24.04.18D1 are vulnerable to Remote Command Execution. An attacker can achieve arbitrary command execution by sending a carefully crafted malicious string to the CGI function responsible for handling usb_paswd.asp." } ], "metrics": {}, "references": [ { "url": "https://gist.github.com/Swind1er/c8656b32058e28e64f92d100c92ca12c", "source": "cve@mitre.org" }, { "url": "https://www.dlink.com/en/security-bulletin/", "source": "cve@mitre.org" } ] }