CVE-2024-37633: High severity totolink a3700r firmware vulnerability
Published Jun 13, 2024
·Updated
TOTOLINK A3700R V9.1.2u.616520211012 was discovered to contain a stack overflow via ssid in the function setWiFiGuestCfg
Affected Software
3 affected components
Totolink A3700R Firmware
All of the following
Totolink A3700R Firmware=9.1.2u.6165_20211012
Totolink A3700R Firmware
Event History
Jun 13, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-37633?
CVE-2024-37633 has been classified with a high severity due to the potential for a stack overflow vulnerability.
2
How do I fix CVE-2024-37633?
To fix CVE-2024-37633, it is recommended to update the TOTOLINK A3700R firmware to the latest available version that addresses this vulnerability.
3
What is the impact of CVE-2024-37633?
The impact of CVE-2024-37633 could allow an attacker to execute arbitrary code or cause a denial of service on the affected device.
4
What specific function is vulnerable in CVE-2024-37633?
CVE-2024-37633 identifies a vulnerability in the setWiFiGuestCfg function that can lead to a stack overflow.
5
Which devices are affected by CVE-2024-37633?
CVE-2024-37633 specifically affects the TOTOLINK A3700R running firmware version V9.1.2u.6165_20211012.