CVE-2024-33278: ASUS Rt-AX88U Firmware

Critical severity, CVSS 9.8. EPSS: 0.8% chance of exploitation in the next 30 days.

Buffer Overflow vulnerability in ASUS router RT-AX88U with firmware versions v3.0.0.4.388_24198 allows a remote attacker to execute arbitrary code via the connection_state_machine due to improper length validation for the cookie field.

Affected products

  • ASUS Rt-AX88U Firmware: version 3.0.0.4.388_24198 only

Published 2024-06-24. Last modified 2026-06-17.