CVE-2024-37637: Critical severity totolink a3700r firmware vulnerability
Published Jun 14, 2024
·Updated
TOTOLINK A3700R V9.1.2u.616520211012 was discovered to contain a stack overflow via ssid5g in the function setWizardCfg.
Affected Software
3 affected components
Totolink A3700R Firmware
All of the following
Totolink A3700R Firmware=9.1.2u.6165_20211012
Totolink A3700R Firmware
Event History
Jun 14, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-37637?
CVE-2024-37637 has a high severity due to its potential for remote code execution through stack overflow.
2
How do I fix CVE-2024-37637?
Fix CVE-2024-37637 by upgrading the TOTOLINK A3700R firmware to the latest version that addresses this vulnerability.
3
What systems are affected by CVE-2024-37637?
CVE-2024-37637 affects the TOTOLINK A3700R device running firmware version V9.1.2u.6165_20211012.
4
What type of vulnerability is CVE-2024-37637?
CVE-2024-37637 is classified as a stack overflow vulnerability that can be exploited through a specific function.
5
What could be the impact of exploiting CVE-2024-37637?
Exploiting CVE-2024-37637 could allow an attacker to execute arbitrary code on the affected TOTOLINK A3700R device.