CVE-2023-46522

TP-LINK device TL-WR886N V7.0_3.0.14_Build_221115_Rel.56908n.bin and TL-WDR7660 2.0.30 were discovered to contain a stack overflow via the function deviceInfoRegister.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:tp-link:tl-wr886n_firmware:3.0.14:*:*:*:*:*:*:*
cpe:2.3:h:tp-link:tl-wr886n:7.0:*:*:*:*:*:*:*

History

25 Oct 2024, 17:15

Type Values Removed Values Added
References
  • () https://github.com/Jianchun-Ding/CVE-POC-update2/tree/main -
Summary (en) TP-LINK TL-WR886N V7.0_3.0.14_Build_221115_Rel.56908n.bin was discovered to contain a stack overflow via the function deviceInfoRegister. (en) TP-LINK device TL-WR886N V7.0_3.0.14_Build_221115_Rel.56908n.bin and TL-WDR7660 2.0.30 were discovered to contain a stack overflow via the function deviceInfoRegister.

26 Oct 2023, 22:41

Type Values Removed Values Added
First Time Tp-link
Tp-link tl-wr886n
Tp-link tl-wr886n Firmware
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
References (MISC) https://resource.tp-link.com.cn/pc/docCenter/showDoc?id=1676623713687165 - (MISC) https://resource.tp-link.com.cn/pc/docCenter/showDoc?id=1676623713687165 - Product
References (MISC) https://github.com/XYIYM/Digging/blob/main/TP-LINK/TL-WR886N/2/1.md - (MISC) https://github.com/XYIYM/Digging/blob/main/TP-LINK/TL-WR886N/2/1.md - Exploit, Third Party Advisory
CWE CWE-787
CPE cpe:2.3:o:tp-link:tl-wr886n_firmware:3.0.14:*:*:*:*:*:*:*
cpe:2.3:h:tp-link:tl-wr886n:7.0:*:*:*:*:*:*:*

25 Oct 2023, 18:17

Type Values Removed Values Added
New CVE

Information

Published : 2023-10-25 18:17

Updated : 2024-10-25 17:15


NVD link : CVE-2023-46522

Mitre link : CVE-2023-46522

CVE.ORG link : CVE-2023-46522


JSON object : View

Products Affected

tp-link

  • tl-wr886n_firmware
  • tl-wr886n
CWE
CWE-787

Out-of-bounds Write