First published: Thu Aug 25 2022(Updated: )
TOTOLINK N350RT V9.3.5u.6139_B20201216 was discovered to contain a stack overflow via the sPort parameter in the function setIpPortFilterRules.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Totolink N350rt Firmware | =9.3.5u.6139_b20201216 | |
TOTOLINK N350RT |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-36488 has a high severity due to the potential for remote exploitation through a stack overflow.
To fix CVE-2022-36488, upgrade the TOTOLINK N350RT firmware to a version that addresses this vulnerability.
CVE-2022-36488 can be exploited via the sPort parameter in the setIpPortFilterRules function, leading to a stack overflow.
The TOTOLINK N350RT device running firmware version 9.3.5u.6139_B20201216 is specifically affected by CVE-2022-36488.
Exploiting CVE-2022-36488 may allow attackers to execute arbitrary code on the vulnerable device.