CVE-2013-6343: ASUS Rt-AC66U Firmware
High severity, CVSS 10.0. EPSS: 7.8% chance of exploitation in the next 30 days.
Multiple buffer overflows in web.c in httpd on the ASUS RT-N56U and RT-AC66U routers with firmware 3.0.0.4.374_979 allow remote attackers to execute arbitrary code via the (1) apps_name or (2) apps_flag parameter to APP_Installation.asp.
Affected products
- ASUS Rt-AC66U Firmware: version 3.0.0.4..374_979 only
- ASUS Rt-n56u Firmware: version 3.0.0.4..374_979 only
- ASUS TM-AC1900 Firmware: version 3.0.0.4..374_979 only
Published 2014-01-22. Last modified 2026-06-17.