CVE-2024-36831
Severity CVSS v4.0:
Pending analysis
Type:
CWE-476
NULL Pointer Dereference
Publication date:
17/12/2024
Last modified:
21/05/2025
Description
A NULL pointer dereference in the plugins_call_handle_uri_clean function of D-Link DAP-1520 REVA_FIRMWARE_1.10B04_BETA02_HOTFIX allows attackers to cause a Denial of Service (DoS) via a crafted HTTP request without authentication.
Impact
Base Score 3.x
5.30
Severity 3.x
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:dlink:dap-1520_firmware:1.10b04:beta02:*:*:*:*:*:* | ||
| cpe:2.3:h:dlink:dap-1520:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



