AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2024-45623

CRITICAL · CVSS 9.8 EPSS 0.95%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2024-09-02 · Last synced 2026-08-04

CyberRota Analysis

This is a critical severity vulnerability with a CVSS score of 9.8. It affects Apache. It may be remotely exploitable.

CVE
CVE-2024-45623
Severity
CRITICAL
CVSS
9.8
EPSS
0.95%
Apache

Original NVD Description

D-Link DAP-2310 Hardware A Firmware 1.16RC028 allows remote attackers to execute arbitrary code via a stack-based buffer overflow in the ATP binary that handles PHP HTTP GET requests for the Apache HTTP Server (httpd). NOTE: This vulnerability only affects products that are no longer supported by the maintainer.