CVE-2024-37643: High severity trendnet tew-815dap vulnerability
Published Jun 14, 2024
·Updated
TRENDnet TEW-814DAP v1(FW1.01B01) was discovered to contain a stack overflow vulnerability via the submit-url parameter at /formPasswordAuth .
Affected Software
3 affected components
Trendnet TEW-814DAP
All of the following
Trendnet Tew-814dap Firmware=1.01b01
Trendnet TEW-814DAP=1.0
Event History
Jun 14, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-37643?
CVE-2024-37643 has a high severity rating due to its potential to cause a stack overflow, leading to remote code execution.
2
How do I fix CVE-2024-37643?
To fix CVE-2024-37643, update the TRENDnet TEW-814DAP firmware to the latest version provided by the manufacturer.
3
What is the exploit vector for CVE-2024-37643?
CVE-2024-37643 can be exploited via the 'submit-url' parameter at the '/formPasswordAuth' endpoint.
4
Can CVE-2024-37643 be exploited remotely?
Yes, CVE-2024-37643 can be exploited remotely by sending specially crafted requests to the vulnerable endpoint.
5
What are the potential impacts of CVE-2024-37643?
The potential impacts of CVE-2024-37643 include unauthorized access, data manipulation, and execution of arbitrary code on the device.