First published: Mon Oct 16 2023(Updated: )
TOTOLINK CP300+ <=V5.2cu.7594_B20200910 was discovered to contain a stack overflow via the File parameter in the function UploadCustomModule.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Totolink Cp300\+ Firmware | <=5.2cu.7594_b20200910 | |
Totolink Cp300\+ |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-36955 is critical with a score of 9.8.
CVE-2023-36955 affects TOTOLINK CP300+ firmware version up to and including 5.2cu.7594_B20200910.
The vulnerability in TOTOLINK CP300+ firmware is a stack overflow via the File parameter in the function UploadCustomModule.
Yes, TOTOLINK CP300+ firmware version up to and including 5.2cu.7594_B20200910 is vulnerable to exploit CVE-2023-36955.
No, TOTOLINK CP300+ firmware version 5.2cu.7594_B20200910 is vulnerable to CVE-2023-36955.