Showing 2 vulnerabilities on this page for wrt54g

Signals CISA KEV Ransomware Nuclei
Linksys vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

Linksys WRT54G POST Parameter apply.cgi validate_services_port stack-based overflow

A vulnerability was found in Linksys WRT54G 4.21.5. It has been rated as critical. Affected by this issue is the function validate_services_port of the file /apply.cgi of the component POST Parameter Handler. The manipulation of the argument services_array leads to stack-based buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

CWE-121CWE-787Sep 4, 2024
CVSS5.3v4.0EPSS0.751%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

Linksys WRT54G v4.21.5 has a stack overflow vulnerability in get_merge_mac function.

CWE-121Jul 19, 2024
CVSS8.8v3.1EPSS0.318%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX