PT-2022-16495 · Tenda · Tenda Ax3

Published

2022-02-04

·

Updated

2022-02-07

·

CVE-2022-24145

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Tenda AX3 version 16.03.12.10 CN
Description A stack overflow was discovered in the function formWifiBasicSet, allowing attackers to cause a Denial of Service (DoS) via the security and security 5g parameters.
Recommendations For Tenda AX3 version 16.03.12.10 CN, consider disabling the formWifiBasicSet function until a patch is available to prevent exploitation via the security and security 5g parameters.

Exploit

Fix

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2022-24145

Affected Products

Tenda Ax3