CVE-2023-25082 | Milesight UR32L 32.3.0.5 HTTP Request vtysh_ubus firewall_handler_set old_ip/old_mac stack-based overflow (TALOS-2023-1716)
A vulnerability has been found in Milesight UR32L 32.3.0.5 and classified as critical. The affected element is the function firewall_handler_set of the file vtysh_ubus of the component HTTP Request Handler. This manipulation of the argument old_ip/old_mac causes stack-based buffer overflow.
This vulnerability appears as CVE-2023-25082. The attack may be initiated remotely. In addition, an exploit is available.