CVE-2022-36484: High severity totolink n350rt firmware vulnerability
Published Aug 25, 2022
·Updated
TOTOLINK N350RT V9.3.5u.6139B20201216 was discovered to contain a stack overflow via the function setDiagnosisCfg.
Affected Software
2 affected components
Totolink N350RT Firmware=9.3.5u.6139_b20201216
Totolink N350RT Firmware
Event History
Aug 25, 2022
CVE Published
via MITRE·01:55 PM
Data Sourced
via MITRE·01:55 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2022-36484?
CVE-2022-36484 has a high severity due to the potential for remote code execution through stack overflow.
2
How do I fix CVE-2022-36484?
To fix CVE-2022-36484, update the TOTOLINK N350RT firmware to a version that does not include this vulnerability.
3
What systems are affected by CVE-2022-36484?
CVE-2022-36484 specifically affects the TOTOLINK N350RT running firmware version 9.3.5u.6139_B20201216.
4
What is the vulnerability type of CVE-2022-36484?
CVE-2022-36484 is categorized as a stack overflow vulnerability.
5
Can I exploit CVE-2022-36484 remotely?
Yes, CVE-2022-36484 can potentially be exploited remotely due to improper handling of input in the device's configuration function.