CVE-2022-26987
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD
Description
TP-Link TL-WDR7660 2.0.30, Mercury D196G 20200109_2.0.4, and Fast FAC1900R 20190827_2.0.2 routers have a stack overflow issue in `MmtAtePrase` function. Local users could get remote code execution.
Affected (6)
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 2.0.30 |
| Running on/with | Platform Versions |
|---|---|
Tp Link Tl Wdr7660 | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Tp Link Tl Wdr7661 | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Tp Link Tl Wdr7620 | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Tp Link Tl Wdr5660 | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Version 20200109_2.0.4 |
| Running on/with | Platform Versions |
|---|---|
Mercusys Mercury D196g | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Version 20190827_2.0.2 |
| Running on/with | Platform Versions |
|---|---|
Fastcom Fac1900r | All versions |
References (6)
Source: cve@mitre.org
ExploitThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party Advisory
Timeline
No history available yet.