PT-2024-24494 · Tenda · Tenda Ac15

CVE-2024-32303

·

Published

2024-04-17

·

Updated

2025-06-30

CVSS v3.1

8.0

High

VectorAV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Tenda AC15 versions v15.03.05.18 through v15.03.20 multi
Description The issue is a stack overflow vulnerability. It is located via the PPW parameter in the fromWizardHandle function.
Recommendations For versions v15.03.05.18, v15.03.05.19, and v15.03.20 multi, consider disabling the fromWizardHandle function until a patch is available. Restrict access to the PPW parameter to minimize the risk of exploitation.

Fix

Stack Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2024-32303

Affected Products

Tenda Ac15