CVE-2024-8076

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Aug 22, 2024
Updated: Aug 23, 2024
CWE ID 120

Summary

CVE-2024-8076 is a critical vulnerability found in the TOTOLINK AC1200 T8 router firmware version 4.1.5cu.862_B20230228, specifically affecting the function setDiagnosisCfg, which is susceptible to buffer overflow due to improper input handling. This vulnerability allows for remote attacks and can significantly compromise the confidentiality, integrity, and availability of affected systems, with a CVSS score of 9.0 indicating high severity. Remediation steps include updating the router firmware to a secure version once available; however, the vendor has not responded to communications regarding this issue. The low authentication requirement and lack of user interaction make this vulnerability particularly dangerous for organizations relying on these devices. Without prompt action, attackers could exploit this flaw to gain unauthorized access or disrupt services.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share