VYPR
Unrated severityNVD Advisory· Published Mar 1, 2023· Updated Mar 7, 2025

CVE-2023-24130

CVE-2023-24130

Description

Jensen of Scandinavia Eagle 1200AC V15.03.06.33_en was discovered to contain a stack overflow via the wepkey parameter at /goform/WifiBasicSet.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

A stack overflow in Jensen of Scandinavia Eagle 1200AC V15.03.06.33_en via the wepkey parameter at /goform/WifiBasicSet allows denial of service or potential code execution.

Vulnerability

A stack overflow vulnerability exists in the Jensen of Scandinavia Eagle 1200AC router running firmware version V15.03.06.33_en. The flaw is triggered through the wepkey parameter within the /goform/WifiBasicSet endpoint, allowing an attacker to cause a stack overflow by supplying an overly long value [1].

Exploitation

An attacker can exploit this vulnerability by sending a specially crafted HTTP request to the vulnerable endpoint /goform/WifiBasicSet with an excessively long wepkey parameter. The attacker may need network access to the device's web interface and knowledge of the target's IP address. No authentication is mentioned as required, making the attack vector potentially accessible to unauthenticated attackers on the same network.

Impact

Successful exploitation results in a stack overflow, which can lead to a denial of service (DoS) by crashing the device. In some cases, it may allow arbitrary code execution, granting the attacker full control over the affected device. Depending on the exploitation, this could lead to unauthorized access to network traffic or further compromise of connected systems [1].

Mitigation

The fixed version is not explicitly stated in the available references. Users should monitor the vendor's support page for firmware updates. If no patch is available, consider replacing the device with a supported model or restricting network access to the management interface [1].

AI Insight generated on May 25, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

2

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

3

News mentions

0

No linked articles in our index yet.