CVE-2022-24156: High severity Tenda AX3 firmware vulnerability
Published Feb 4, 2022
·Updated
Tenda AX3 v16.03.12.10CN was discovered to contain a stack overflow in the function formSetVirtualSer. This vulnerability allows attackers to cause a Denial of Service (DoS) via the list parameter.
Affected Software
2 affected components
Tenda AX3 firmware=16.03.12.10_cn
Tenda AX3
Event History
Feb 4, 2022
CVE Published
via MITRE·01:33 AM
Data Sourced
via MITRE·01:33 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this Tenda AX3 stack overflow vulnerability?
The vulnerability ID for this Tenda AX3 stack overflow vulnerability is CVE-2022-24156.
2
What is the severity of CVE-2022-24156?
CVE-2022-24156 has a severity rating of 7.5 (High).
3
How does the CVE-2022-24156 vulnerability impact Tenda AX3 devices?
The CVE-2022-24156 vulnerability can be exploited to cause a Denial of Service (DoS) on Tenda AX3 devices.
4
What is the affected software version of Tenda AX3 for CVE-2022-24156?
The affected software version of Tenda AX3 for CVE-2022-24156 is 16.03.12.10_CN.
5
Is Tenda AX3 firmware version 16.03.12.10_CN vulnerable to CVE-2022-24156?
Yes, Tenda AX3 firmware version 16.03.12.10_CN is vulnerable to CVE-2022-24156.