CVE-2024-40085
EUVD-2024-3840721.10.2024, 21:15
A Buffer Overflow vulnerability in the local_app_set_router_wan function of Vilo 5 Mesh WiFi System <= 5.16.1.33 allows remote, unauthenticated attackers to execute arbitrary code via pppoe_username and pppoe_password fields being larger than 128 bytes in length.
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| viloliving | vilo_5_mesh_wifi_system_firmware | 𝑥 ≤ 5.16.1.33 | ADP |