CVE-2022-24147: High severity Tenda AX3 firmware vulnerability
Tenda AX3 v16.03.12.10CN was discovered to contain a stack overflow in the function fromAdvSetMacMtuWan. This vulnerability allows attackers to cause a Denial of Service (DoS) via the wanMTU, wanSpeed, cloneType, mac, and serviceName parameters.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-24147?
CVE-2022-24147 is a vulnerability in Tenda AX3 v16.03.12.10_CN that allows attackers to cause a Denial of Service (DoS) through a stack overflow in the function fromAdvSetMacMtuWan.
How severe is CVE-2022-24147?
CVE-2022-24147 has a severity rating of 7.5 (High).
What software is affected by CVE-2022-24147?
Tenda AX3 v16.03.12.10_CN firmware is affected by CVE-2022-24147.
How can an attacker exploit CVE-2022-24147?
An attacker can exploit CVE-2022-24147 by manipulating the wanMTU, wanSpeed, cloneType, mac, and serviceName parameters to cause a Denial of Service (DoS).
Is Tenda AX3 vulnerable to CVE-2022-24147?
Yes, Tenda AX3 v16.03.12.10_CN firmware is vulnerable to CVE-2022-24147.