Lucene search

K
vulnrichmentMitreVULNRICHMENT:CVE-2023-36950
HistoryOct 16, 2023 - 12:00 a.m.

CVE-2023-36950

2023-10-1600:00:00
mitre
github.com
1
totolink
x5000r
a7000r
stack overflow
http_host
loginauth

AI Score

7.9

Confidence

High

EPSS

0.001

Percentile

48.1%

SSVC

Exploitation

none

Automatable

no

Technical Impact

total

TOTOLINK X5000R V9.1.0u.6118_B20201102 and TOTOLINK A7000R V9.1.0u.6115_B20201022 was discovered to contain a stack overflow via the http_host parameter in the function loginAuth.

ADP Affected

[
  {
    "cpes": [
      "cpe:2.3:o:totolink:x5000r_firmware:9.1.0u.6118_b20201102:*:*:*:*:*:*:*"
    ],
    "vendor": "totolink",
    "product": "x5000r_firmware",
    "versions": [
      {
        "status": "affected",
        "version": "9.1.0u.6118_b20201102"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:o:totolink:a7000r_firmware:9.1.0u.6115_b20201022:*:*:*:*:*:*:*"
    ],
    "vendor": "totolink",
    "product": "a7000r_firmware",
    "versions": [
      {
        "status": "affected",
        "version": "9.1.0u.6115_b20201022"
      }
    ],
    "defaultStatus": "unknown"
  }
]

AI Score

7.9

Confidence

High

EPSS

0.001

Percentile

48.1%

SSVC

Exploitation

none

Automatable

no

Technical Impact

total

Related for VULNRICHMENT:CVE-2023-36950