PT-2024-28903 · Shenzhen Libituo Technology Co. · Lbt-T300-T400

CVE-2024-40536

·

Published

2024-07-16

·

Updated

2024-12-06

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions Shenzhen Libituo Technology Co., Ltd LBT-T300-T400 version 3.2
Description A stack overflow issue was discovered via the pin 3g code parameter in the config 3g para function.
Recommendations For version 3.2, avoid using the pin 3g code parameter in the config 3g para function until a fix is available. As a temporary workaround, consider restricting access to the config 3g para function to minimize the risk of exploitation.

Exploit

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2024-40536

Affected Products

Lbt-T300-T400