CVE-2024-45623: D-Link Dap-2310 Firmware
Critical severity, CVSS 9.8. EPSS: 1% chance of exploitation in the next 30 days.
D-Link DAP-2310 Hardware A Firmware 1.16RC028 allows remote attackers to execute arbitrary code via a stack-based buffer overflow in the ATP binary that handles PHP HTTP GET requests for the Apache HTTP Server (httpd). NOTE: This vulnerability only affects products that are no longer supported by the maintainer.
Affected products
- D-Link Dap-2310 Firmware: version 1.16RC028 only
Published 2024-09-02. Last modified 2026-06-17.