CVE-2023-36952

Severity CVSS v4.0:
Pending analysis
Type:
CWE-787 Out-of-bounds Write
Publication date:
16/10/2023
Last modified:
19/10/2023

Description

TOTOLINK CP300+ V5.2cu.7594_B20200910 was discovered to contain a stack overflow via the pingIp parameter in the function setDiagnosisCfg.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:totolink:cp300\+_firmware:5.2cu.7594_b20200910:*:*:*:*:*:*:*
cpe:2.3:h:totolink:cp300\+:-:*:*:*:*:*:*:*