CVE-2024-8579: TOTOLINK AC1200 T8 cstecgi.cgi setWiFiRepeaterCfg buffer overflow
A vulnerability classified as critical has been found in TOTOLINK AC1200 T8 4.1.5cu.861B20230220. This affects the function setWiFiRepeaterCfg of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument password leads to buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-8579?
CVE-2024-8579 is classified as a critical vulnerability.
How do I fix CVE-2024-8579?
To mitigate CVE-2024-8579, update to the latest firmware version that addresses this vulnerability.
What type of vulnerability is CVE-2024-8579?
CVE-2024-8579 is a buffer overflow vulnerability affecting the TOTOLINK AC1200 T8.
Which devices are affected by CVE-2024-8579?
CVE-2024-8579 specifically affects the TOTOLINK AC1200 T8 running firmware version 4.1.5cu.861_B20230220.
What function is vulnerable in CVE-2024-8579?
The function setWiFiRepeaterCfg in the file /cgi-bin/cstecgi.cgi is vulnerable in CVE-2024-8579.