PT-2022-17302 · Tenda · Tenda Ac6

Published

2022-03-18

·

Updated

2022-03-25

·

CVE-2022-25450

CVSS v2.0

10

Critical

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Tenda AC6 version 15.03.05.09
Description A stack overflow issue was discovered in the SetVirtualServerCfg function via the list parameter.
Recommendations For version 15.03.05.09, consider restricting access to the SetVirtualServerCfg function until a patch is available. Avoid using the list parameter in the affected function to minimize the risk of exploitation.

Exploit

Fix

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2022-25450

Affected Products

Tenda Ac6