Stack Overflow Vulnerability in TOTOLINK X2000R Router
CVE-2023-46552

9.8CRITICAL

Key Information:

Vendor
Totolink
Vendor
CVE Published:
25 October 2023

Summary

The TOTOLINK X2000R router version Gh v1.0.0-B20230221.0948.web has been identified to have a stack overflow vulnerability occurring in the formMultiAP function. This flaw could allow remote attackers to exploit the stack overflow, potentially leading to unauthorized access or disruption of services. Users are advised to assess their exposure and mitigate risks by updating to the latest firmware as detailed in the vendor's reference materials.

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.