CVE-2023-27217

Published on: Not Yet Published

Last Modified on: 05/18/2023 12:53:00 PM UTC

The following vulnerability was found:

A stack-based buffer overflow in the ChangeFriendlyName() function of Belkin Smart Outlet V2 F7c063 firmware_2.00.11420.OWRT.PVT_SNSV2 allows attackers to cause a Denial of Service (DoS) via a crafted UPNP request.

CVE References

Description Tags Link
‘FriendlyName’ Buffer Overflow Vulnerability in Wemo Smart Plug V2 | Sternum sternumiot.com
text/html
URL Logo MISC sternumiot.com/iot-blog/mini-smart-plug-v2-vulnerability-buffer-overflow/

Social Mentions

Source Title Posted (UTC)
Twitter Icon @AdrestiaD The flaw (CVE-2023-27217) is a buffer-overflow vulnerability that affects model F7C063 of the device and allows rem… twitter.com/i/web/status/1… 2023-05-17 07:04:08
Twitter Icon @0xedeon #IoTsecurity #Wemo #BufferOverflow #CVE-2023-27217 #Sternum #Belkin 2023-05-17 11:17:19
Twitter Icon @IntrdimsnlCable @belkin patch CVE-2023-27217. Take your customers security posture seriously. 2023-05-17 15:22:27
Twitter Icon @RProgramming150 Exploitable Vulnerability CVE-2023-27217 Found in Wemo Smart Plug Mini V2 Home Device theverge.com/2023/5/16/2372… (reddit.com/r/programming/…) 2023-05-17 19:12:10
Twitter Icon @elhackernet Enchufes con Wi-Fi Wemo, modelo Wemo Smart Plug Mini V2 tiene una vulnerabilidad registrada como CVE-2023-27217 que… twitter.com/i/web/status/1… 2023-05-17 19:39:00
Twitter Icon @RProgramming200 Exploitable Vulnerability CVE-2023-27217 Found in Wemo Smart Plug Mini V2 Home Device theverge.com/2023/5/16/2372… (reddit.com/r/programming/…) 2023-05-17 20:24:09
Twitter Icon @r_cybersecurity Critical Buffer Overflow Vulnerability Found in Wemo Mini Smart Plug V2 (CVE-2023-27217) reddit.com/r/cybersecurit… 2023-05-17 21:42:31
Twitter Icon @GavLaaaaaaaa Exploitable Vulnerability CVE-2023-27217 Found in Wemo Smart Plug Mini V2 Home Device theverge.com/2023/5/16/2372…twitter.com/i/web/status/1… 2023-05-17 23:40:12
Twitter Icon @CVEreport CVE-2023-27217 : A stack-based buffer overflow in the ChangeFriendlyName function of Belkin Smart Outlet V2 F7c06… twitter.com/i/web/status/1… 2023-05-18 03:06:53
Twitter Icon @ProgDiscussions Exploitable Vulnerability CVE-2023-27217 Found in Wemo Smart Plug Mini V2 Home Device theverge.com/2023/5/16/2372… Dis… twitter.com/i/web/status/1… 2023-05-18 03:53:01
Twitter Icon @WilfridBlanc Critical Buffer Overflow #Vulnerability Found in Wemo Mini Smart Plug V2 (#CVE-2023-27217) reddit.com/r/cybersecurit… 2023-05-18 06:00:03
Reddit Logo Icon /r/HomeKit Newly Uncovered Security Vulnerability in Wemo Mini Smart Plug V2 2023-05-16 18:06:15
Reddit Logo Icon /r/homeassistant Just an FYI, There's a Security Vulnerability in Belkin Wemo Smart Plug V2 Devices 2023-05-16 17:31:04
Reddit Logo Icon /r/programming Exploitable Vulnerability CVE-2023-27217 Found in Wemo Smart Plug Mini V2 Home Device 2023-05-17 15:22:45
Reddit Logo Icon /r/cybersecurity Critical Buffer Overflow Vulnerability Found in Wemo Mini Smart Plug V2 (CVE-2023-27217) 2023-05-17 18:34:45
Reddit Logo Icon /r/embedded Unpatched Vulnerability CVE-2023-27217 Found in Belkin Wemo Mini Smart Plug V2 2023-05-18 16:21:18
Reddit Logo Icon /r/IOT Critical Buffer Overflow Vulnerability Found in IoT Device Wemo Mini Smart Plug V2 (CVE-2023-27217) 2023-05-18 19:50:38
© CVE.report 2023 Twitter Nitter Twitter Viewer |

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

CVE.report and Source URL Uptime Status status.cve.report