CVE-2023-25113 | Milesight UR32L 32.3.0.5 HTTP Request vtysh_ubus set_l2tp key stack-based overflow (TALOS-2023-1716)
A vulnerability classified as critical was found in Milesight UR32L 32.3.0.5. This impacts the function set_l2tp of the file vtysh_ubus of the component HTTP Request Handler. Such manipulation of the argument key leads to stack-based buffer overflow.
This vulnerability is listed as CVE-2023-25113. The attack may be performed from remote. In addition, an exploit is available.