packetstormsecurity.com
http://packetstormsecurity.com/files/152458/TP-LINK-TL-WR940N-TL-WR941ND-Buffer-Overflow.html CVE-2019-6989
HIGH
TP-LINK TL-WR940N / TL-WR941ND - Buffer Overflow
Record summary
CVE-2019-6989 has a selected CVSS score of 8.8 (high); EIP currently links 1 catalogued exploit.
Description
TP-Link TL-WR940N is vulnerable to a stack-based buffer overflow, caused by improper bounds checking by the ipAddrDispose function. By sending specially crafted ICMP echo request packets, a remote authenticated attacker could overflow a buffer and execute arbitrary code on the system with elevated privileges.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBTP-LINK TL-WR940N / TL-WR941ND - Buffer OverflowExploitDB exploitby Grzegorz WypychNot analyzed1 file
References
4exchange.xforce.ibmcloud.com
https://exchange.xforce.ibmcloud.com/ nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2019-6989 46678exploit
https://www.exploit-db.com/exploits/46678