Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A stack-based buffer overflow exists in the GoAhead-Webs HTTP daemon on KuWFi 4G LTE AC900 devices with firmware 1.0.13. The /goform/formMultiApnSetting handler uses sprintf() to copy the user-supplied pincode parameter into a fixed 132-byte stack buffer with no bounds checks. This allows an attacker to corrupt adjacent stack memory, crash the web server, and (under certain conditions) may enable arbitrary code execution.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
KuWFi 4G LTE AC900 安全漏洞
Vulnerability Description
KuWFi 4G LTE AC900是中国KuWFi公司的一款WiFi路由器。 KuWFi 4G LTE AC900 1.0.13版本存在安全漏洞,该漏洞源于缺少边界检查导致栈缓冲区溢出,可能导致崩溃或执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A