CVE-2023-49418

TOTOLink A7000R V9.1.0u.6115_B20201022has a stack overflow vulnerability via setIpPortFilterRules.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:totolink:a7000r_firmware:9.1.0u.6115_b20201022:*:*:*:*:*:*:*
cpe:2.3:h:totolink:a7000r:-:*:*:*:*:*:*:*

History

13 Dec 2023, 20:26

Type Values Removed Values Added
Summary
  • (es) TOTOLink A7000R V9.1.0u.6115_B20201022 tiene una vulnerabilidad de desbordamiento de pila a travĂ©s de setIpPortFilterRules.
First Time Totolink
Totolink a7000r
Totolink a7000r Firmware
References () https://github.com/cnitlrt/iot_vuln/tree/master/totolink/A7000R/setIpPortFilterRules - () https://github.com/cnitlrt/iot_vuln/tree/master/totolink/A7000R/setIpPortFilterRules - Exploit, Third Party Advisory
CPE cpe:2.3:o:totolink:a7000r_firmware:9.1.0u.6115_b20201022:*:*:*:*:*:*:*
cpe:2.3:h:totolink:a7000r:-:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
CWE CWE-787

11 Dec 2023, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-12-11 14:15

Updated : 2023-12-13 20:26


NVD link : CVE-2023-49418

Mitre link : CVE-2023-49418

CVE.ORG link : CVE-2023-49418


JSON object : View

Products Affected

totolink

  • a7000r
  • a7000r_firmware
CWE
CWE-787

Out-of-bounds Write