Stack Buffer Overflow in TOTOLINK CPE Products
CVE-2024-34200
8.8HIGH
Summary
The TOTOLINK CPE CP450 devices are susceptible to a stack buffer overflow vulnerability present in the setIpQosRules function. This flaw can arise when improper validation for input is implemented, allowing an attacker to manipulate memory, potentially leading to unauthorized access or denial of service. Users of affected versions should prioritize updates to mitigate risks associated with this vulnerability, ensuring the integrity and security of their network devices.
References
CVSS V3.1
Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published