First published: Tue Jul 18 2023(Updated: )
A heap overflow vulnerability found in EdgeRouters and Aircubes allows a malicious actor to interrupt UPnP service to said devices.
Credit: support@hackerone.com support@hackerone.com
Affected Software | Affected Version | How to fix |
---|---|---|
Ui Edgemax Edgerouter Firmware | =2.0.9 | |
Ui Edgemax Edgerouter | ||
Ui Aircube Firmware | <2.8.9 | |
Ui Aircube | ||
All of | ||
Ui Edgemax Edgerouter Firmware | =2.0.9 | |
Ui Edgemax Edgerouter | ||
All of | ||
Ui Aircube Firmware | <2.8.9 | |
Ui Aircube |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2023-31998.
The severity of CVE-2023-31998 is high with a CVSS score of 7.5.
EdgeRouters and Aircubes are affected by CVE-2023-31998.
CVE-2023-31998 allows a malicious actor to interrupt UPnP service on EdgeRouters and Aircubes.
There is no available fix for CVE-2023-31998 at the moment. It is recommended to follow the vendor's security advisory for updates.