CVE-2021-44352: Buffer Overflow
A Stack-based Buffer Overflow vulnerability exists in the Tenda AC15 V15.03.05.18multi device via the list parameter in a post request in goform/SetIpMacBind.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-44352?
The severity of CVE-2021-44352 is critical with a CVSS score of 9.8.
How does the Stack-based Buffer Overflow vulnerability work in CVE-2021-44352?
The vulnerability in CVE-2021-44352 allows an attacker to overflow the stack and execute arbitrary code by sending a specially crafted POST request with a manipulated 'list' parameter in goform/SetIpMacBind.
Which devices are affected by CVE-2021-44352?
The Tenda AC15 V15.03.05.18_multi device is affected by CVE-2021-44352.
Is Tenda AC15 vulnerable to CVE-2021-44352?
Yes, the Tenda AC15 device with firmware version 15.03.05.18_multi is vulnerable to CVE-2021-44352.
Is there a fix for CVE-2021-44352?
At the time of writing, there is no official fix available for CVE-2021-44352. It is recommended to update to a patched firmware version when it becomes available.