Stack-Based Buffer Overflow Vulnerability in Tenda AX1806 Firmware
CVE-2024-40416
9.8CRITICAL
What is CVE-2024-40416?
A vulnerability found in the Tenda AX1806 firmware 1.0.0.1 compromises system integrity via a stack-based buffer overflow in the SetVirtualServerCfg function located within the /goform endpoint. This flaw arises from insufficient bounds checking on user-supplied input, allowing attackers to potentially manipulate memory and execute arbitrary code. Timely patching and security measures are crucial to mitigate the risks associated with this vulnerability.