Stack Overflow Vulnerability in Tenda W30E Router
CVE-2022-45522
7.5HIGH
Summary
The Tenda W30E router has been identified with a stack overflow vulnerability stemming from improper handling of input parameters on the /goform/SafeClientFilter page. This flaw allows attackers to manipulate the page parameter, potentially leading to unauthorized access or execution of arbitrary code. Ensuring that firmware is updated and applying security best practices can mitigate risks associated with this vulnerability.
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved