Authenticated RCE Vulnerability Due to Buffer Overflow on TP-Link VIGI C385
21Vexday Risk Score
Sem sinal de exploração. Nenhum artefato público de exploração conhecido até agora.
ssvc Trackcvss 8.5epss 6.6%
probabilidade de exploração
6.6%top 7% das CVEs
exploração observada
nãonenhuma fonte reporta
An authenticated buffer handling flaw in TP-Link VIGI C385 V1 Web API lacking input sanitization, may allow memory corruption leading to remote code execution. Authenticated attackers may trigger buffer overflow and potentially execute arbitrary code with elevated privileges.
CVSS:4.0/AV:A/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Produtos afetados
TP-Link Systems Inc. · VIGI C485 V1