CVE-2024-35388: High severity totolink nr1800x firmware vulnerability
Published May 24, 2024
·Updated
TOTOLINK NR1800X v9.1.0u.6681B20230703 was discovered to contain a stack overflow via the password parameter in the function urldecode
Affected Software
3 affected components
TOTOLINK NR1800X
All of the following
TOTOLINK Nr1800x Firmware=9.1.0u.6681_b20230703
TOTOLINK NR1800X
Event History
Jan 1, 1970
CVE Published
via MITRE·12:00 AM
May 24, 2024
CVE Published
via NVD·07:15 PM
Aug 2, 2024
Data Sourced
via MITRE·03:13 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2024-35388?
CVE-2024-35388 has a high severity due to its potential to cause a stack overflow.
2
How do I fix CVE-2024-35388?
To fix CVE-2024-35388, update the TOTOLINK NR1800X firmware to the latest version provided by the vendor.
3
What systems are impacted by CVE-2024-35388?
CVE-2024-35388 affects the TOTOLINK NR1800X router running firmware version 9.1.0u.6681_B20230703.
4
What are the potential risks associated with CVE-2024-35388?
The risks associated with CVE-2024-35388 include unauthorized access and potential remote code execution due to stack overflow.
5
Is there a workaround for CVE-2024-35388?
Currently, there is no known workaround for CVE-2024-35388 other than applying the firmware update.