CVE-2024-48712: Medium severity tp-link tl-wdr7660 firmware vulnerability
Published Oct 15, 2024
·Updated
In TP-Link TL-WDR7660 1.0, the rtRuleJsonToBin function handles the parameter string name without checking it, which can lead to stack overflow vulnerabilities.
Affected Software
3 affected components
TP-Link TL-WDR7660
All of the following
TP-Link Tl-wdr7660 Firmware=1.0
TP-Link TL-WDR7660
Event History
Oct 15, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-48712?
CVE-2024-48712 is classified as a high severity vulnerability due to its potential to allow stack overflow attacks.
2
How do I fix CVE-2024-48712?
To fix CVE-2024-48712, update the firmware of your TP-Link TL-WDR7660 to the latest version provided by TP-Link.
3
What are the potential impacts of CVE-2024-48712?
CVE-2024-48712 can lead to remote code execution due to a stack overflow, compromising the affected device.
4
Which devices are affected by CVE-2024-48712?
CVE-2024-48712 specifically affects TP-Link TL-WDR7660 devices running vulnerable firmware versions.
5
What is the cause of CVE-2024-48712?
CVE-2024-48712 is caused by improper handling of the parameter string in the rtRuleJsonToBin function, leading to stack overflow vulnerabilities.