Stack Overflow Vulnerability in Tenda G1 and G3 Routers
CVE-2021-45996
7.5HIGH
Summary
A stack overflow vulnerability exists in the Tenda G1 and G3 routers that can be exploited through the portMappingServer function. Attackers can manipulate various parameters, including portMappingProtocol, portMappingWan, portMappingInternal, and portMappingExternal, to trigger Denial of Service (DoS) conditions. Successful exploitation could render the affected devices inoperable, interrupting network services and impacting users significantly.
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved