CVE-2024-54808

Netgear WNR854T 1.5.2 (North America) contains a stack-based buffer overflow vulnerability in the SetDefaultConnectionService function due to an unconstrained use of sscanf. The vulnerability allows for control of the program counter and can be utilized to achieve arbitrary code execution.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:netgear:wnr854t_firmware:1.5.2:*:*:*:*:*:*:*
cpe:2.3:h:netgear:wnr854t:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-03-31 21:15

Updated : 2025-04-17 12:55


NVD link : CVE-2024-54808

Mitre link : CVE-2024-54808

CVE.ORG link : CVE-2024-54808


JSON object : View

Products Affected

netgear

  • wnr854t
  • wnr854t_firmware
CWE
CWE-121

Stack-based Buffer Overflow