CVE-2024-4963 | D-Link DAR-7000-40 V31R02B1413C /url/url.php file_upload unrestricted upload (SAP10354)
A vulnerability, which was classified as critical, was found in D-Link DAR-7000-40 V31R02B1413C. This affects an unknown part of the file /url/url.php. The manipulation of the argument file_upload leads to unrestricted upload. This vulnerability only affects products that are no longer supported by the maintainer.
This vulnerability is uniquely identified as CVE-2024-4963. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to replace the affected component with an alternative.
Vendor was contacted early and confirmed immediately that the product is end-of-life. It should be retired and replaced.