Stack Overflow Vulnerability in Tenda W6-S Router
CVE-2022-45499
7.5HIGH
Summary
A stack overflow vulnerability exists in the Tenda W6-S router, specifically found in the configuration endpoint at /goform/WifiMacFilterGet. The issue is triggered by improper handling of the wl_radio parameter, which could allow an attacker to exploit the vulnerability, potentially leading to unauthorized access or disruption of device functionality. Users of this router model should take immediate precautions to secure their devices and apply any available patches.
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved