CVE-2024-46313

CVSS 3.1 Score 8 of 10 (high)

Details

Published Sep 30, 2024
Updated: Oct 4, 2024
CWE ID 121

Summary

CVE-2024-46313 is a newly discovered vulnerability affecting the TP-Link WR941ND V6 wireless router. The issue lies in the handling of the ssid parameter in the /userRpm/popupSiteSurveyRpm.htm file. A stack overflow can be triggered, leading to potential crashes and unintended code execution. An attacker could exploit this vulnerability by crafting specially crafted SSID names that cause the stack to overflow, potentially gaining unauthorized access to the router or causing it to crash. Users are advised to update their routers with the latest firmware as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share