V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsProductsVendorsDocs
CVE-2024-51138
CVE
Critical

Vigor165/166 4.2.7 and earlier; Vigor2620/LTE200 3.9.8.9 and earlier; Vigor2860/2925 3.9.8 and earlier; Vigor2862/2926 3.9.9.5 and earlier;…

CVSS
9.8
Critical
EPSS
0.01
p62
Published
2024-01-01
Updated
2024-01-01
Description

Vigor165/166 4.2.7 and earlier; Vigor2620/LTE200 3.9.8.9 and earlier; Vigor2860/2925 3.9.8 and earlier; Vigor2862/2926 3.9.9.5 and earlier; Vigor2133/2762/2832 3.9.9 and earlier; Vigor2135/2765/2766 4.4.5. and earlier; Vigor2865/2866/2927 4.4.5.3 and earlier; Vigor2962 4.3.2.8 and earlier; Vigor3912 4.3.6.1 and earlier; Vigor3910 4.4.3.1 and earlier a stack-based buffer overflow vulnerability has been identified in the URL parsing functionality of the TR069 STUN server. This flaw occurs due to insufficient bounds checking on the amount of URL parameters, allowing an attacker to exploit the overflow by sending a maliciously crafted request. Consequently, a remote attacker can execute arbitrary code with elevated privileges.

Tags · CWE
Pre-auth
CWE-121
Affected products
Vigor1000b_firmwareVigor2133_firmwareVigor2135_firmwareVigor2620_firmwareVigor2762_firmwareVigor2763_firmwareVigor2765_firmwareVigor2766_firmwareVigor2832_firmwareVigor2860_firmwareVigor2862_firmwareVigor2865_firmwareVigor2866_firmwareVigor2915_firmwareVigor2925_firmwareVigor2926_firmwareVigor2927_firmwareVigor2952_firmwareVigor2962_firmwareVigor3220_firmware
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Timeline
2024-01-01
Published
2024-01-01
Updated
CVSS 3.1 breakdown
Attack Vector
AV: N
Network (N)
Attack Complexity
AC: L
Low (L)
Privileges Required
PR: N
None (N)
User Interaction
UI: N
None (N)
Scope
S: U
Unchanged (U)
Confidentiality Impact
C: H
High (H)
Integrity Impact
I: H
High (H)
Availability Impact
A: H
High (H)
Exploit indicators
EPSS
0.011 · p62
Known exploited (KEV)
No
Known exploits — Сканер-ВС
No Сканер-ВС checks registered for this vulnerability yet.
Affected products
ProductVendorStatus
vigor1000b_firmware*Tracked
vigor2133_firmware*Tracked
vigor2135_firmware*Tracked
vigor2620_firmware*Tracked
vigor2762_firmware*Tracked
vigor2763_firmware*Tracked
vigor2765_firmware*Tracked
vigor2766_firmware*Tracked
vigor2832_firmware*Tracked
vigor2860_firmware*Tracked
vigor2862_firmware*Tracked
vigor2865_firmware*Tracked
vigor2866_firmware*Tracked
vigor2915_firmware*Tracked
vigor2925_firmware*Tracked
vigor2926_firmware*Tracked
vigor2927_firmware*Tracked
vigor2952_firmware*Tracked
vigor2962_firmware*Tracked
vigor3220_firmware*Tracked
Showing first 20 of 23
Source databases
CVE