Stack-based buffer overflow in EDR-G902 Series and EDR-G903 Series - CVE-2020-14511
Published: July 15, 2020
Vulnerability details
The vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to a boundary error in the system web server. A remote unauthenticated attacker can perform malicious operation with the crafted web browser cookie, trigger stack-based buffer overflow and execute arbitrary code on the target system.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.
Affected software
EDR-G903 Series
How to mitigate CVE-2020-14511
EDR-G903 Series - update to 5.5