go to Content
:::

TWCERT/CC Taiwan Computer Emergency Response Team/Coordination Center

:::
Date:
Font-stze:

ASUS RT-AC86U - Buffer Overflow

TVN ID TVN-202305005
CVE ID CVE-2023-28703
CVSS 7.2 (High)
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Affected Products ASUS RT-AC86U v3.0.0.4.386.51255
Description ASUS RT-AC86U’s specific cgi function has a stack-based buffer overflow vulnerability due to insufficient validation for network packet header length. A remote attacker with administrator privileges can exploit this vulnerability to execute arbitrary system commands, disrupt system or terminate service.
Solution Update version to lastest
Credit Tmotfl (Xingyu Xu)
Public Date 2023-05-30
Top