CVE-2022-24163: High severity Tenda AX3 firmware vulnerability
Published Feb 4, 2022
·Updated
Tenda AX3 v16.03.12.10CN was discovered to contain a stack overflow in the function fromSetSysTime. This vulnerability allows attackers to cause a Denial of Service (DoS) via the timeZone parameter.
Affected Software
2 affected components
Tenda AX3 firmware=16.03.12.10_cn
Tenda AX3
Event History
Feb 4, 2022
CVE Published
via MITRE·01:33 AM
Data Sourced
via MITRE·01:33 AM
Description
Frequently Asked Questions
1
What is CVE-2022-24163?
CVE-2022-24163 is a vulnerability found in Tenda AX3 v16.03.12.10_CN that allows attackers to cause a Denial of Service (DoS) through a stack overflow in the function fromSetSysTime.
2
What is the severity of CVE-2022-24163?
CVE-2022-24163 has a severity rating of 7.5 (High).
3
How does CVE-2022-24163 affect Tenda AX3 firmware?
CVE-2022-24163 affects Tenda AX3 firmware version 16.03.12.10_CN and can result in a Denial of Service (DoS) attack.
4
Is Tenda AX3 vulnerable to CVE-2022-24163?
No, Tenda AX3 is not vulnerable to CVE-2022-24163.
5
How can I mitigate the CVE-2022-24163 vulnerability?
To mitigate the CVE-2022-24163 vulnerability, it is recommended to update Tenda AX3 firmware to a version that is not affected.