First published: Mon Oct 16 2023(Updated: )
TOTOLINK CP300+ V5.2cu.7594_B20200910 was discovered to contain a stack overflow via the pingIp parameter in the function setDiagnosisCfg.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Totolink Cp300\+ Firmware | =5.2cu.7594_b20200910 | |
Totolink Cp300\+ |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this TOTOLINK CP300+ stack overflow is CVE-2023-36952.
The severity rating of CVE-2023-36952 is critical with a score of 9.8.
The stack overflow vulnerability in TOTOLINK CP300+ allows an attacker to cause a denial-of-service condition or execute arbitrary code.
The affected software version of TOTOLINK CP300+ is 5.2cu.7594_b20200910.
Yes, TOTOLINK CP300+ with version 5.2cu.7594_b20200910 is vulnerable to the stack overflow.