First published: Fri May 07 2021(Updated: )
An issue was discovered on Tenda AC11 devices with firmware through 02.03.01.104_CN. A stack buffer overflow vulnerability in /goform/setportList allows attackers to execute arbitrary code on the system via a crafted post request.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tenda Ac11 Firmware | <=02.03.01.104_cn | |
Tenda AC11 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-31758 is a vulnerability discovered on Tenda AC11 devices with firmware through 02.03.01.104_CN.
The severity of CVE-2021-31758 is critical with a CVSS score of 9.8.
CVE-2021-31758 is a stack buffer overflow vulnerability in the /goform/setportList endpoint, which allows attackers to execute arbitrary code on the system via a crafted post request.
The affected software of CVE-2021-31758 is Tenda AC11 firmware versions up to 02.03.01.104_CN.
Yes, Tenda AC11 devices with firmware up to 02.03.01.104_CN are vulnerable to CVE-2021-31758.