Stack Overflow Vulnerability in TOTOLINK N350RT Router
CVE-2022-36488
7.8HIGH
Summary
A stack overflow vulnerability has been identified in the TOTOLINK N350RT router. The issue arises in the setIpPortFilterRules function, where inadequate input validation on the sPort parameter allows an attacker to potentially exploit the overflow. This could lead to arbitrary code execution or disruption of services, posing serious security risks for network environments utilizing this router. Users are advised to apply any available patches and review their security configurations.
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved