ALFA WiFi CampPro Router Buffer Overflow Vulnerability Allowing Arbitrary Code Execution
Vulnerability
A buffer overflow vulnerability has been identified in the ALFA WiFi CampPro router, specifically in the firmware version ALFA_CAMPRO-co-2.29. This vulnerability allows remote attackers to execute arbitrary code by exploiting a stack overflow in the GreenAP function, triggered through the GAPSMinute3 key value.
Impact
Exploitation of this vulnerability allows remote, unauthenticated attackers to take control of the device by hijacking the program's control flow, potentially leading to arbitrary code execution.
Reproduction
The vulnerability can be reproduced by sending a POST request to the 'goform/GreenAP' endpoint with the GAPSMinute3 key set to a value that exceeds the buffer size, such as a string of 'a' characters. This can be done using a Python script that automates the request.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
