First published: Mon Oct 16 2023(Updated: )
TOTOLINK NR1800X V9.1.0u.6279_B20210910 was discovered to contain a stack overflow via the http_host parameter in the function loginAuth.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Totolink Nr1800x Firmware | =9.1.0u.6279_b20210910 | |
TOTOLINK NR1800X |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-36340 is a vulnerability discovered in TOTOLINK NR1800X V9.1.0u.6279_B20210910 that allows for a stack overflow through the http_host parameter in the loginAuth function.
CVE-2023-36340 has a severity rating of 9.8, making it critical.
The affected software version of CVE-2023-36340 is TOTOLINK NR1800X V9.1.0u.6279_B20210910.
The stack overflow vulnerability in CVE-2023-36340 can be exploited by manipulating the http_host parameter in the loginAuth function.
Yes, TOTOLINK NR1800X V9.1.0u.6279_B20210910 is the only vulnerable version of the software.