Summary A vulnerability in EdgeRouters’s and AirCube’s miniupnpd allows LAN attackers to cause the service to overflow an internal heap and potentially execute arbitrary code. Credit An independent security researcher working with SSD Secure Disclosure. CVE CVE-2023-31998 Affected Devices EdgeRouters 2.0.9-hotfix.6 and earlier AirCube firmware version 2.8.8 and earlier Vendor Response The vendor has issued … SSD Advisory – EdgeRouters and AirCube miniupnpd Heap Overflow Read More »