CVE-2022-24157: High severity Tenda AX3 firmware vulnerability
Published Feb 4, 2022
·Updated
Tenda AX3 v16.03.12.10CN was discovered to contain a stack overflow in the function formSetMacFilterCfg. This vulnerability allows attackers to cause a Denial of Service (DoS) via the deviceList parameter.
Affected Software
2 affected components
Tenda AX3 firmware=16.03.12.10_cn
Tenda AX3
Event History
Feb 4, 2022
CVE Published
via MITRE·01:33 AM
Data Sourced
via MITRE·01:33 AM
Description
Frequently Asked Questions
1
What is CVE-2022-24157?
CVE-2022-24157 refers to a vulnerability found in Tenda AX3 v16.03.12.10_CN firmware that allows attackers to cause a Denial of Service (DoS) via the deviceList parameter.
2
How severe is CVE-2022-24157?
CVE-2022-24157 has a severity rating of 7.5 (high).
3
What software versions are affected by CVE-2022-24157?
Tenda AX3 v16.03.12.10_CN firmware is affected by CVE-2022-24157.
4
Is Tenda AX3 vulnerable to CVE-2022-24157?
No, Tenda AX3 is not vulnerable to CVE-2022-24157.
5
How can CVE-2022-24157 be fixed?
There is currently no known fix or patch available for CVE-2022-24157. It is recommended to contact the vendor for further information.