PT-2023-27748 · Unknown · Juplink Rx4-1500

Published

2023-08-23

·

Updated

2023-09-01

·

CVE-2023-41028

CVSS v3.1

9.0

Critical

VectorAV:A/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Juplink RX4-1500 versions 1.0.2 through 1.0.5
Description A stack-based buffer overflow exists in the Juplink RX4-1500 WiFi router. An authenticated attacker can exploit this issue to achieve code execution as root.
Recommendations For versions 1.0.2 through 1.0.5, update to a version that fixes the stack-based buffer overflow issue to prevent code execution as root. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Stack Overflow

Memory Corruption

Weakness Enumeration

Related Identifiers

CVE-2023-41028

Affected Products

Juplink Rx4-1500