CVE-2024-22660: Critical severity Totolink A3700R Firmware vulnerability
Published Jan 23, 2024
·Updated
TOTOLINKA3700RV9.1.2u.616520211012has a stack overflow vulnerability via setLanguageCfg
Affected Software
2 affected components
All of the following
Totolink A3700R Firmware=9.1.2u.6165_20211012
Totolink A3700R Firmware
Event History
Jan 23, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-22660?
CVE-2024-22660 has a high severity due to its stack overflow vulnerability which can allow remote code execution.
2
How do I fix CVE-2024-22660?
To fix CVE-2024-22660, update the TOTOLINK A3700R firmware to a version that addresses this vulnerability.
3
What are the potential impacts of CVE-2024-22660?
The potential impacts of CVE-2024-22660 include unauthorized access and control over the affected device.
4
Which devices are affected by CVE-2024-22660?
CVE-2024-22660 affects the TOTOLINK A3700R running firmware version 9.1.2u.6165_20211012.
5
Is CVE-2024-22660 being actively exploited?
As of now, there are no indications that CVE-2024-22660 is being actively exploited in the wild.