非影资讯
面向安全从业者的中英双语安全研究与漏洞情报精选。

TP-Link TL-WR940N: Analysis of a 1day (CVE-2022-24355) Buffer Overflow RCE Vulnerability

blog.viettelcybersecurity.com | 漏洞 | CVE-2022-24355 | #rce

摘要

About the bug CVE-2022-24355 allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link TL-WR940N routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the parsing of file name extensions. The issue results from the lack of proper validation of the length of
发布时间
收录时间

原文 ↗

相关内容

返回