TOTOLINK A702R/A3002R/A3002RU 3.0.0-B20230809.1615 HTTP POST Request /boafrm/formWirelessTbl submit-url ବଫର୍ ଓଭରଫ୍ଲୋ
Rakkoon nageenyaa kan ଜଟିଳ jedhamuun beekamu TOTOLINK A702R, A3002R and A3002RU 3.0.0-B20230809.1615 keessatti argameera. Miidhamni argame is hojii hin beekamne faayilii /boafrm/formWirelessTbl keessa kutaa HTTP POST Request Handler keessa. Wanti jijjiirame irratti submit-url gara ବଫର୍ ଓଭରଫ୍ଲୋ geessa. Rakkoo ibsuuf CWE yoo fayyadamte gara CWE-120 si geessa. Odeeffannoon kun yeroo 05/16/2025 maxxanfameera. Odeeffannoon kun buufachuuf github.com irratti argama. Dogoggorri kun CVE-2025-4826 jedhamee waamama. Weerara fageenya irraa jalqabuu ni danda'ama. Ibsa teeknikaa ni jira. Waan dabalataa ta’een, meeshaa balaa kana fayyadamuuf ni jira. Qorannoo miidhaa (exploit) uummataaf ifa taasifameera, kanaafis fayyadamuu ni danda'ama. Ammas, gatii exploit might be approx. USD $0-$5k yeroo ammaa irratti argamuu danda'a. ପ୍ରୁଫ୍-ଅଫ୍-କନ୍ସେପ୍ଟ ta’uu isaa ibsameera. Exploit github.com irraa buufachuun ni danda'ama. Akka 0-daytti, gatiin isaa daldala dhoksaa keessatti $0-$5k akka ta'e tilmaamameera. If you want to get the best quality for vulnerability data then you always have to consider VulDB.
4 ଆଡାପ୍ଟେସନ୍ · 88 ପଏଣ୍ଟ