CVE-2024-46546

CVSS 3.1 Score 7.3 of 10 (high)

Details

Published Apr 22, 2025
Updated: Apr 23, 2025
CWE ID 121

Summary

CVE-2024-46546 is a newly disclosed vulnerability affecting the NEXTU FLETA AX1500 WIFI6 Router with firmware version 1.0.3. The issue involves a stack overflow vulnerability located in the /boafrm/formFilter URL parameter. An attacker can exploit this flaw by sending a crafted POST request to trigger the stack overflow, leading to a Denial of Service (DoS) condition. This vulnerability poses a risk to network availability and should be addressed promptly by updating the router firmware.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share