Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cx99-h4rf-2j49

Опубликовано: 11 нояб. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

The boa httpd of Trendnet TEW-820AP 1.01.B01 has a stack overflow vulnerability in /boafrm/formIPv6Addr, /boafrm/formIpv6Setup, /boafrm/formDnsv6. The reason is that the check of ipv6 address is not sufficient, which allows attackers to construct payloads for attacks.

The boa httpd of Trendnet TEW-820AP 1.01.B01 has a stack overflow vulnerability in /boafrm/formIPv6Addr, /boafrm/formIpv6Setup, /boafrm/formDnsv6. The reason is that the check of ipv6 address is not sufficient, which allows attackers to construct payloads for attacks.

EPSS

Процентиль: 95%
0.1988
Средний

9.8 Critical

CVSS3

Дефекты

CWE-120

Связанные уязвимости

CVSS3: 9.8
nvd
около 1 года назад

The boa httpd of Trendnet TEW-820AP 1.01.B01 has a stack overflow vulnerability in /boafrm/formIPv6Addr, /boafrm/formIpv6Setup, /boafrm/formDnsv6. The reason is that the check of ipv6 address is not sufficient, which allows attackers to construct payloads for attacks.

EPSS

Процентиль: 95%
0.1988
Средний

9.8 Critical

CVSS3

Дефекты

CWE-120