PT-2024-13733 · Edimax · Edimax Br6478Ac

Published

2024-01-16

·

Updated

2024-01-30

·

CVE-2023-49351

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Edimax BR6478AC V2 firmware version v1.23
Description A stack-based buffer overflow vulnerability in the /bin/webs binary allows attackers to overwrite other values located on the stack due to an incorrect use of the strcpy() function.
Recommendations For Edimax BR6478AC V2 firmware version v1.23, consider disabling the strcpy() function in the /bin/webs binary as a temporary workaround until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Memory Corruption

Weakness Enumeration

Related Identifiers

CVE-2023-49351

Affected Products

Edimax Br6478Ac