ID

VAR-202310-2351


CVE

CVE-2023-46527


DESCRIPTION

TP-LINK TL-WR886N V7.0_3.0.14_Build_221115_Rel.56908n.bin and TL-WDR7660 2.0.30 was discovered to contain a stack overflow via the function bindRequestHandle.

Trust: 1.0

sources: NVD: CVE-2023-46527

AFFECTED PRODUCTS

vendor:tp linkmodel:tl-wr886nscope:eqversion:3.0.14

Trust: 1.0

sources: NVD: CVE-2023-46527

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2023-46527
value: CRITICAL

Trust: 1.0

134c704f-9b21-4f2e-91b3-4a467353bcc0: CVE-2023-46527
value: HIGH

Trust: 1.0

nvd@nist.gov: CVE-2023-46527
baseSeverity: CRITICAL
baseScore: 9.8
vectorString: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
attackVector: NETWORK
attackComplexity: LOW
privilegesRequired: NONE
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: 3.9
impactScore: 5.9
version: 3.1

Trust: 1.0

134c704f-9b21-4f2e-91b3-4a467353bcc0: CVE-2023-46527
baseSeverity: HIGH
baseScore: 8.8
vectorString: CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
attackVector: ADJACENT
attackComplexity: LOW
privilegesRequired: NONE
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: 2.8
impactScore: 5.9
version: 3.1

Trust: 1.0

sources: NVD: CVE-2023-46527 // NVD: CVE-2023-46527

PROBLEMTYPE DATA

problemtype:CWE-787

Trust: 1.0

sources: NVD: CVE-2023-46527

EXTERNAL IDS

db:NVDid:CVE-2023-46527

Trust: 1.0

sources: NVD: CVE-2023-46527

REFERENCES

url:https://github.com/jianchun-ding/cve-poc-update

Trust: 1.0

url:https://github.com/xyiym/digging/blob/main/tp-link/tl-wr886n/13/1.md

Trust: 1.0

url:https://resource.tp-link.com.cn/pc/doccenter/showdoc?id=1676623713687165

Trust: 1.0

sources: NVD: CVE-2023-46527

SOURCES

db:NVDid:CVE-2023-46527

LAST UPDATE DATE

2024-09-11T22:39:59.116000+00:00


SOURCES UPDATE DATE

db:NVDid:CVE-2023-46527date:2024-09-11T16:35:19.963

SOURCES RELEASE DATE

db:NVDid:CVE-2023-46527date:2023-10-25T18:17:38.323