Stack Overflow Vulnerability in Tenda G1 and G3 Routers
CVE-2021-45994
7.5HIGH
Summary
A stack overflow vulnerability was identified in Tenda G1 and G3 routers. This issue exists in the formDelDhcpRule function, specifically related to the delDhcpIndex parameter. By manipulating this parameter, attackers can exploit the stack overflow, potentially causing a denial of service condition that disrupts router functionality. Users should apply necessary security patches and follow best practices to secure their devices against such vulnerabilities.
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved