CVE-2022-24172: High severity tenda g1 vulnerability
Tenda routers G1 and G3 v15.11.0.17(9502)CN were discovered to contain a stack overflow in the function formAddDhcpBindRule. This vulnerability allows attackers to cause a Denial of Service (DoS) via the addDhcpRules parameter.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-24172?
The severity of CVE-2022-24172 is characterized as a Denial of Service (DoS) vulnerability.
How do I fix CVE-2022-24172?
To fix CVE-2022-24172, users should update their Tenda G1 or G3 routers to the latest firmware version or apply recommended patches.
Which devices are affected by CVE-2022-24172?
CVE-2022-24172 affects Tenda routers G1 and G3 running firmware version 15.11.0.17(9502)_CN.
What is the impact of CVE-2022-24172?
CVE-2022-24172 can lead to a Denial of Service (DoS), making the device unresponsive to legitimate requests.
Who can exploit CVE-2022-24172?
Any attacker with access to the vulnerable Tenda devices can exploit CVE-2022-24172 by manipulating the addDhcpRules parameter.