First published: Fri Feb 04 2022(Updated: )
Tenda AX3 v16.03.12.10_CN was discovered to contain a stack overflow in the function formSetRebootTimer. This vulnerability allows attackers to cause a Denial of Service (DoS) via the rebootTime parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tenda Ax3 Firmware | =16.03.12.10_cn | |
Tenda AX3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-24154 is a vulnerability found in Tenda AX3 v16.03.12.10_CN firmware, which allows attackers to cause a Denial of Service (DoS) via the rebootTime parameter.
CVE-2022-24154 has a severity rating of 7.5 (high).
The CVE-2022-24154 vulnerability can be exploited by sending malicious input in the rebootTime parameter.
No, Tenda Ax3 Firmware version 16.03.12.10_cn is the affected software, but Tenda AX3 hardware is not vulnerable.
At the time of this report, no official fix has been released for CVE-2022-24154. It is recommended to update to the latest firmware version when it becomes available.