CVE-2023-46371: Critical severity tp-link wdr7660 firmware vulnerability
Published Oct 24, 2023
·Updated
TP-Link device TL-WDR7660 2.0.30 and TL-WR886N 2.0.12 has a stack overflow vulnerability via the function upgradeInfoJsonToBin.
Affected Software
2 affected components
All of the following
TP-Link Tl-wdr7660 Firmware=2.0.30
TP-Link TL-WDR7660
Event History
Oct 24, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Oct 25, 2023
Data Sourced
via NVD·06:17 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID of this TP-Link device?
The vulnerability ID of this TP-Link device is CVE-2023-46371.
2
What is the severity of CVE-2023-46371?
The severity of CVE-2023-46371 is critical with a CVSS score of 9.8.
3
What is the description of CVE-2023-46371?
CVE-2023-46371 is a stack overflow vulnerability in the TP-Link device TL-WDR7660 2.0.30 via the function upgradeInfoJsonToBin.
4
Is TP-Link TL-WDR7660 2.0.30 affected by CVE-2023-46371?
Yes, TP-Link TL-WDR7660 2.0.30 is affected by CVE-2023-46371.
5
How can I fix the stack overflow vulnerability in TP-Link TL-WDR7660 2.0.30?
To fix the stack overflow vulnerability in TP-Link TL-WDR7660 2.0.30, it is recommended to upgrade to a patched version of the firmware when available.