VYPR
Unrated severityNVD Advisory· Published Mar 1, 2023· Updated Mar 7, 2025

CVE-2023-24120

CVE-2023-24120

Description

Jensen of Scandinavia Eagle 1200AC V15.03.06.33_en was discovered to contain a stack overflow via the wrlEn_5g parameter at /goform/WifiBasicSet.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Stack overflow in Eagle 1200AC router via wrlEn_5g parameter allows unauthenticated remote code execution.

Vulnerability

A stack-based buffer overflow exists in the /goform/WifiBasicSet handler of Jensen of Scandinavia Eagle 1200AC firmware version V15.03.06.33_en. The flaw is triggered by the wrlEn_5g parameter, which is copied into a fixed-size stack buffer without proper bounds checking, leading to memory corruption.

Exploitation

An unauthenticated attacker can exploit this vulnerability by sending a crafted HTTP POST request to the vulnerable endpoint with an overly long wrlEn_5g parameter. No authentication or prior access is required. The overflow can overwrite the return address and other critical data on the stack.

Impact

Successful exploitation allows remote code execution on the router with root privileges, enabling full device compromise. An attacker could modify network traffic, install malware, or use the router as a pivot point for further attacks on the internal network.

Mitigation

As of the disclosure date (2023-03-01), no official patch has been released. Users should monitor for firmware updates from the vendor. In the interim, disable remote management and restrict access to the router's web interface from untrusted networks.

AI Insight generated on May 25, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

2

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

3

News mentions

0

No linked articles in our index yet.