#VU19176 Stack-based buffer overflow in TL-WR940N and TL-WR941ND - CVE-2019-6989
Published: July 15, 2019
TL-WR940N
TL-WR941ND
TP-Link
Description
The vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to a boundary error in the ipAddrDispose function at PingIframeRpm.htm page. A remote authenticated attacker can send an overly long request, trigger stack-based buffer overflow and execute arbitrary code on the target system.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.