Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
This vulnerability allows remote attackers to execute arbitrary code on affected installations of TP-Link TL-WA1201 1.0.1 Build 20200709 rel.66244(5553) wireless access points. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of DNS responses. A crafted DNS message can trigger an overflow of a fixed-length, stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-14656.
CVSS Information
N/A
Vulnerability Type
栈缓冲区溢出
Vulnerability Title
Tl-Wa1201 缓冲区错误漏洞
Vulnerability Description
Tp-Link Tl-Wa1201是中国Tp-Link公司的一款双频无线接入点。 TP-Link TL-WA1201 中存在缓冲区错误漏洞,该漏洞源于产品处理DNS消息时未能正确判断内存边界。未经身份验证的攻击者可通过该漏洞导致基于堆栈的缓冲区溢出导执行代码。
CVSS Information
N/A
Vulnerability Type
N/A