PT-2024-28903 · Shenzhen Libituo Technology Co. · Lbt-T300-T400

Published

2024-07-16

·

Updated

2024-12-06

·

CVE-2024-40536

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions Shenzhen Libituo Technology Co., Ltd LBT-T300-T400 version 3.2
Description A stack overflow issue was discovered via the pin 3g code parameter in the config 3g para function.
Recommendations For version 3.2, avoid using the pin 3g code parameter in the config 3g para function until a fix is available. As a temporary workaround, consider restricting access to the config 3g para function to minimize the risk of exploitation.

Exploit

Fix

Buffer Overflow

Weakness Enumeration

Related Identifiers

CVE-2024-40536

Affected Products

Lbt-T300-T400