CVE-2024-48168: D-Link Dcs-960l Firmware

Critical severity, CVSS 9.8. EPSS: 1% chance of exploitation in the next 30 days.

A stack overflow vulnerability exists in the sub_402280 function of the HNAP service of D-Link DCS-960L 1.09, allowing an attacker to execute arbitrary code.

Affected products

  • D-Link Dcs-960l Firmware: version 1.09 only

Published 2024-10-14. Last modified 2026-06-17.