Stack Overflow Vulnerability in Tenda W20E Router
CVE-2022-40867
9.8CRITICAL
What is CVE-2022-40867?
The Tenda W20E router version 15.11.0.6 is susceptible to a stack overflow vulnerability in the function formIPMacBindDel. This issue arises when handling requests to the endpoint /goform/delIpMacBind/, allowing an attacker to potentially execute arbitrary code. The flaw can be exploited, leading to a breach in the security of the network. Users are advised to apply security patches and review their router settings to mitigate the risks associated with this vulnerability.