First published: Mon Feb 01 2021(Updated: )
ASUS RT-AX86U router firmware below version under 9.0.0.4_386 has a buffer overflow in the blocking_request.cgi function of the httpd module that can cause code execution when an attacker constructs malicious data.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Asus Rt-ax86u Firmware | <9.0.0.4_386 | |
ASUS RT-AX86U |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this ASUS RT-AX86U router firmware vulnerability is CVE-2020-36109.
The severity of CVE-2020-36109 is critical with a severity value of 9.8.
An attacker can exploit this vulnerability by constructing malicious data that triggers a buffer overflow in the blocking_request.cgi function of the httpd module.
ASUS RT-AX86U router firmware versions below 9.0.0.4_386 are affected by this vulnerability.
To fix the CVE-2020-36109 vulnerability, you should update your ASUS RT-AX86U router firmware to version 9.0.0.4_386 or higher.