PT-2024-2405 · Tenda · Tenda Ac15

Yhryhryhr_Miemie

·

Published

2024-03-14

·

Updated

2024-05-17

·

CVE-2024-2807

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Tenda AC15 versions 15.03.05.18 through 15.03.20 multi
Description A critical vulnerability affects the formExpandDlnaFile function of the /goform/expandDlnaFile file, leading to a stack-based buffer overflow when the filePath argument is manipulated. This can be initiated remotely, potentially impacting the confidentiality, integrity, and availability of protected information.
Recommendations For Tenda AC15 versions 15.03.05.18 through 15.03.20 multi, as a temporary workaround, consider disabling the formExpandDlnaFile function until a patch is available. Restrict access to the /goform/expandDlnaFile endpoint to minimize the risk of exploitation. Avoid using the filePath parameter in the affected API endpoint until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Stack Overflow

Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2024-02357
CVE-2024-2807

Affected Products

Tenda Ac15