CVE-2019-13129 is a high-severity stack consumption vulnerability affecting Motorola CX2L MWR04L routers, specifically firmware version 1.01. This flaw, caused by infinite recursion in the scopd service due to improper length handling with snprintf, can be triggered remotely via TCP port 8010 or UDP port 8080. A successful attack would lead to a denial-of-service condition, rendering the device inoperable. The vulnerability has a CVSS v3 score of 7.5 (HIGH), indicating a network-based attack with low complexity and no user interaction required, resulting in high availability impact. Despite its severity, there is no evidence of active exploitation, nor is exploit code publicly available in Metasploit or ExploitDB. Community discussion and media coverage for this CVE are minimal, suggesting a lack of widespread attention or exploitation. The EPSS score is very low, further indicating a low probability of exploitation in the wild.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
1.01CPE matchmatch criteria | cpe:2.3:o:motorola:cx2l_mwr04l_firmware:1.01:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.