Stack Overflow Vulnerability in TOTOLINK Routers
CVE-2023-45985

7.5HIGH

Key Information:

Vendor
Totolink
Vendor
CVE Published:
16 October 2023

Summary

A stack overflow vulnerability has been identified in the TOTOLINK X5000R and A7000R routers within the setParentalRules function. Attackers can exploit this issue by sending a specially crafted POST request, potentially leading to a Denial of Service (DoS). This flaw may disrupt operations and impact users' ability to connect to the network, making it crucial for affected users to apply security measures.

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.