PT-2023-26082 · Tenda · Tenda Fh1202

Published

2023-07-14

·

Updated

2023-07-21

·

CVE-2023-37721

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Tenda F1202 version V1.0BR V1.2.0.20(408) Tenda FH1202 version V1.2.0.19 EN
Description A stack overflow was discovered in the page parameter in the fromSafeMacFilter() function. This issue affects the specified versions of Tenda F1202 and FH1202.
Recommendations For Tenda F1202 version V1.0BR V1.2.0.20(408), consider disabling the fromSafeMacFilter() function until a patch is available. For Tenda FH1202 version V1.2.0.19 EN, avoid using the page parameter in the affected API endpoint until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Memory Corruption

Weakness Enumeration

Related Identifiers

CVE-2023-37721

Affected Products

Tenda Fh1202