CVE-2022-24155: High severity Tenda AX3 firmware vulnerability
Published Feb 4, 2022
·Updated
Tenda AX3 v16.03.12.10CN was discovered to contain a heap overflow in the function setSchedWifi. This vulnerability allows attackers to cause a Denial of Service (DoS) via the schedStartTime and schedEndTime parameters.
Affected Software
2 affected components
Tenda AX3 firmware=16.03.12.10_cn
Tenda AX3
Event History
Feb 4, 2022
CVE Published
via MITRE·01:33 AM
Data Sourced
via MITRE·01:33 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID of the Tenda AX3 vulnerability?
The vulnerability ID of the Tenda AX3 vulnerability is CVE-2022-24155.
2
What is the severity of CVE-2022-24155?
The severity of CVE-2022-24155 is high with a CVSS score of 7.5.
3
What is the affected software version of CVE-2022-24155?
The affected software version of CVE-2022-24155 is Tenda Ax3 Firmware v16.03.12.10_CN.
4
What is the impact of CVE-2022-24155?
CVE-2022-24155 allows attackers to cause a Denial of Service (DoS) by exploiting a heap overflow in the function setSchedWifi.
5
Is Tenda AX3 vulnerable to CVE-2022-24155?
No, Tenda AX3 is not vulnerable to CVE-2022-24155.