Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4rf2-x7fh-vgpg

Опубликовано: 19 авг. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

In the TP-Link RE365 V1_180213, there is a buffer overflow vulnerability due to the lack of length verification for the USER_AGENT field in /usr/bin/httpd. Attackers who successfully exploit this vulnerability can cause the remote target device to crash or execute arbitrary commands.

In the TP-Link RE365 V1_180213, there is a buffer overflow vulnerability due to the lack of length verification for the USER_AGENT field in /usr/bin/httpd. Attackers who successfully exploit this vulnerability can cause the remote target device to crash or execute arbitrary commands.

EPSS

Процентиль: 60%
0.00401
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-121
CWE-787

Связанные уязвимости

CVSS3: 9.8
nvd
больше 1 года назад

In the TP-Link RE365 V1_180213, there is a buffer overflow vulnerability due to the lack of length verification for the USER_AGENT field in /usr/bin/httpd. Attackers who successfully exploit this vulnerability can cause the remote target device to crash or execute arbitrary commands.

CVSS3: 9.8
fstec
больше 1 года назад

Уязвимость поля USER_AGENT файла /usr/bin/httpd микропрограммного обеспечения усилителя Wi-Fi-сигнала TP-Link RE365, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 60%
0.00401
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-121
CWE-787