Heap Buffer Overflow in Tenda M3 Router
CVE-2022-38568
7.5HIGH
Summary
A heap buffer overflow vulnerability exists in Tenda M3 routers, specifically in the formSetFixTools function. This flaw can be exploited by attackers to trigger a Denial of Service (DoS) condition through manipulation of the hostname parameter. It is essential for users of affected versions to apply necessary security updates to mitigate potential risks.
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved