CVE Feed

    Dashboard / CVE / CVE-2024-34198

    CVE-2024-34198

    TOTOLINK AC1200 Wireless Router A3002RU V2.1.1-B20230720.1011 is vulnerable to Buffer Overflow. The formWlEncrypt CGI handler in the boa program fails to limit the length of the wlan_ssid field from user input. This allows attackers to craft malicious HTTP requests by supplying an excessively long value for the wlan_ssid field, leading to a stack overflow. This can be further exploited to execute arbitrary commands or launch denial-of-service attacks.

    Published:Aug 28, 2024
    Last Modified:Jul 3, 2025
    EPS:Aug 28, 2024
    EPSS Score:0.00572
    CVSS Score:9.8

    Affected Products

    Vendor
    Totolink
    Product
    A3002ru
    Vendor
    Totolink
    Product
    A3002ru Firmware

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High