Stack Overflow Vulnerability in TOTOLINK N600R Router
CVE-2022-29399
9.8CRITICAL
Summary
The TOTOLINK N600R router version V4.3.0cu.7647_B20210106 exhibits a stack overflow vulnerability due to improper handling of the 'url' parameter in a specific function. This flaw can potentially allow attackers to execute arbitrary code, disrupting the device's operation and compromising its security. Users of this product are advised to apply updates and monitor for unauthorized access.
References
CVSS V3.1
Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved