websocket_data_handler of the component anweb. This manipulation causes stack-based buffer overflow.This vulnerability appears as CVE-2022-40718. The attacker needs to be present on the local network. There is no available exploit.
The affected component should be upgraded.
Vollständiger Original-Bericht
Ausführliche Details, Code-Beispiele & Hersteller-Stellungnahme auf vuldb.com.
SOCIAL SHARE CARD GENERATOR