CVE-2024-29385: D-Link Dir-845l Firmware

Critical severity, CVSS 9.0. EPSS: 1.6% chance of exploitation in the next 30 days.

DIR-845L router <= v1.01KRb03 has an Unauthenticated remote code execution vulnerability in the cgibin binary via soapcgi_main function.

Affected products

  • D-Link Dir-845l Firmware: up to and including 1.01krb03

Published 2024-03-22. Last modified 2026-06-17.