Stack Overflow Vulnerability in Tenda AX12 Router
CVE-2022-28917

7.5HIGH

Key Information:

Vendor
Tenda
Vendor
CVE Published:
18 May 2022

Summary

A stack overflow vulnerability exists in the Tenda AX12 Router, specifically impacting the lanIp parameter in the /goform/AdvSetLanIp endpoint. This flaw could potentially allow an attacker to exploit the router's functionality, leading to unauthorized access or system instability. Mitigating this vulnerability is crucial for maintaining the integrity and security of network devices.

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.