Buffer Overflow Vulnerability in Wavlink AC3000 Router
CVE-2024-37357

Currently unrated

Key Information:

Vendor

Wavlink

Vendor
CVE Published:
14 January 2025

What is CVE-2024-37357?

A buffer overflow vulnerability exists in the adm.cgi set_TR069() functionality of the Wavlink AC3000 M33A8 router. By crafting a malicious HTTP request, an attacker can exploit this flaw to cause a stack-based buffer overflow, potentially compromising the integrity of the device. It is crucial for users to be aware of this vulnerability as it can lead to unauthorized access if triggered through authenticated requests.

References

Timeline

  • Vulnerability published

.