Back

HIGH

Shenzhen Libituo Technology LBT-T300-HW1 apply.cgi start_lan buffer overflow

Published May 3, 2026

Description

A vulnerability has been found in Shenzhen Libituo Technology LBT-T300-HW1 up to 1.2.8. Impacted is the function start_lan of the file /apply.cgi. The manipulation of the argument Channel/ApCliSsid leads to buffer overflow. The attack is possible to be carried out remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

Affected products

Remediation

No remediation recorded yet.

References (6)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner VulDB
Published May 3, 2026
Updated May 5, 2026
Reserved May 2, 2026

CISA Vulnrichment

Updated May 5, 2026

NVD

Status Deferred
Modified Jun 17, 2026

Red Hat

No data

ENISA EUVD

Assigner VulDB
Published May 3, 2026
Updated May 5, 2026

GitHub

No data