Heap Overflow Vulnerability in Tenda AX3 Router by Tenda
CVE-2022-24155
7.5HIGH
Summary
The Tenda AX3 router version v16.03.12.10_CN contains a heap overflow vulnerability within the setSchedWifi function. This security flaw allows attackers to exploit the schedStartTime and schedEndTime parameters, potentially leading to a Denial of Service (DoS). If unmitigated, this vulnerability can disrupt the operation of the affected router, impacting users' connectivity and overall network stability. Immediate action is recommended to patch the affected version.
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved