Buffer Overflow Vulnerability in Tenda AX12 Router
CVE-2022-37292
5.5MEDIUM
Summary
The Tenda AX12 router is susceptible to a buffer overflow vulnerability due to improper handling of requests in the sub_42FDE4 function. When a post request is made under the /goform/SetIpMacBind endpoint, an overflow may occur, potentially allowing unauthorized access or manipulation of system resources. It is crucial for users to address this vulnerability to protect their devices and network integrity.
References
CVSS V3.1
Score:
5.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved