CVE-2020-28095: High severity tenda ac1200 firmware vulnerability
On Tenda AC1200 (Model AC6) 15.03.06.51multi devices, a large HTTP POST request sent to the change password API will trigger the router to crash and enter an infinite boot loop.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-28095?
CVE-2020-28095 is considered a high severity vulnerability due to its ability to crash the router and cause an infinite boot loop.
How do I fix CVE-2020-28095?
To fix CVE-2020-28095, update the firmware of the Tenda AC1200 to a version that addresses this vulnerability.
What devices are affected by CVE-2020-28095?
The vulnerability CVE-2020-28095 affects Tenda AC1200 devices running firmware version 15.03.06.51_multi.
What is the impact of CVE-2020-28095?
The impact of CVE-2020-28095 is that a large HTTP POST request can crash the router, causing it to enter an infinite boot loop.
Is the Tenda AC6 model affected by CVE-2020-28095?
The Tenda AC6 model is not directly affected by CVE-2020-28095 as it pertains to the firmware version of the AC1200.