Description
Tenda AC10 V1.0 V15.03.06.23, AC1206 V15.03.06.23, AC8 v4 V16.03.34.06, AC6 V2.0 V15.03.06.23, AC7 V1.0 V15.03.06.44, AC5 V1.0 V15.03.06.28, AC9 V3.0 V15.03.06.42_multi and AC10 v4.0 V16.03.10.13 were discovered to contain a stack overflow via the list parameter in the formSetVirtualSer function.
Published: 2023-08-07
Score: 9.8 Critical
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2023-42697 Tenda AC10 V1.0 V15.03.06.23, AC1206 V15.03.06.23, AC8 v4 V16.03.34.06, AC6 V2.0 V15.03.06.23, AC7 V1.0 V15.03.06.44, AC5 V1.0 V15.03.06.28, AC9 V3.0 V15.03.06.42_multi and AC10 v4.0 V16.03.10.13 were discovered to contain a stack overflow via the list parameter in the formSetVirtualSer function.
History

Thu, 17 Oct 2024 15:15:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:h:tenda:ac10:-:*:*:*:*:*:*:*
cpe:2.3:h:tenda:ac5:-:*:*:*:*:*:*:*
cpe:2.3:h:tenda:ac6:-:*:*:*:*:*:*:*
cpe:2.3:h:tenda:ac7:-:*:*:*:*:*:*:*
cpe:2.3:h:tenda:ac8:-:*:*:*:*:*:*:*
cpe:2.3:h:tenda:ac9:-:*:*:*:*:*:*:*
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Subscriptions

Tenda Ac10 Ac10 Firmware Ac1206 Ac1206 Firmware Ac5 Ac5 Firmware Ac6 Ac6 Firmware Ac7 Ac7 Firmware Ac8 Ac8 Firmware Ac9 Ac9 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-10-17T14:40:31.909Z

Reserved: 2023-07-25T00:00:00.000Z

Link: CVE-2023-38937

cve-icon Vulnrichment

Updated: 2024-08-02T17:54:39.643Z

cve-icon NVD

Status : Modified

Published: 2023-08-07T19:15:11.413

Modified: 2024-11-21T08:14:28.943

Link: CVE-2023-38937

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses