PoC Index

CVE-2024-50667

CRITICAL 9.8EPSS 6.7%

The boa httpd of Trendnet TEW-820AP 1.01.B01 has a stack overflow vulnerability in /boafrm/formIPv6Addr, /boafrm/formIpv6Setup, /boafrm/formDnsv6. The reason is that the check of ipv6 address is not sufficient, which allows attackers to construct payloads for attacks.

CVSS v3.1
9.8 CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS
6.67% chance of exploitation in the next 30 days, 93th percentile
Published
2024-11-11
Updated
2024-11-12

Proof-of-concept exploits (1)

References

Related