PT-2024-22404 · Tenda · Tenda Ax12

Published

2024-03-14

·

Updated

2025-03-13

·

CVE-2024-28383

CVSS v2.0

10

Critical

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Tenda AX12 version 1.0 v22.03.01.16
Description A stack overflow issue was discovered via the ssid parameter in the sub 431CF0 function. This issue can be exploited, potentially allowing for unauthorized access or control.
Recommendations For Tenda AX12 version 1.0 v22.03.01.16, consider disabling the sub 431CF0 function or restricting access to the ssid parameter until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Stack Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2025-05890
CVE-2024-28383

Affected Products

Tenda Ax12