Stack Overflow Vulnerability in Tenda W30E Router
CVE-2022-45520
7.5HIGH
Summary
The Tenda W30E Router has been identified to have a stack overflow vulnerability caused by improper handling of the page parameter at /goform/qossetting. This flaw can potentially allow unauthorized access or execution of malicious code on the device, posing risks to network integrity and security. It is essential for users to check their device versions and apply necessary patches to mitigate this risk.
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved