First published: Sun Sep 08 2024(Updated: )
A vulnerability, which was classified as critical, was found in TOTOLINK AC1200 T8 and AC1200 T10 4.1.5cu.861_B20230220/4.1.8cu.5207. This affects the function setParentalRules of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument desc leads to buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Totolink T8 Firmware | =4.1.5cu.861_b20230220 | |
TOTOLINK T8 | ||
All of | ||
Totolink T10 Firmware | =4.1.8cu.5207 | |
TOTOLINK T10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-8573 is classified as a critical vulnerability.
To fix CVE-2024-8573, update the firmware of TOTOLINK AC1200 T8 or T10 to the latest version.
CVE-2024-8573 affects TOTOLINK AC1200 T8 firmware version 4.1.5cu.861_b20230220 and TOTOLINK AC1200 T10 firmware version 4.1.8cu.5207.
CVE-2024-8573 is a buffer overflow vulnerability found in the setParentalRules function.
Exploitation of CVE-2024-8573 can lead to unauthorized access and potentially allow attackers to execute arbitrary code.