CVE-2022-25447: Critical severity tenda ac6 firmware vulnerability
Tenda AC6 v15.03.05.09multi was discovered to contain a stack overflow via the schedendtime parameter in the openSchedWifi function.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-25447?
CVE-2022-25447 is a vulnerability found in Tenda AC6 v15.03.05.09_multi firmware that allows for a stack overflow through the schedendtime parameter.
How severe is CVE-2022-25447?
CVE-2022-25447 has a severity rating of 9.8, which is classified as critical.
How can Tenda AC6 v15.03.05.09_multi be affected by CVE-2022-25447?
Tenda AC6 v15.03.05.09_multi firmware with schedendtime parameter in the openSchedWifi function is vulnerable to the stack overflow vulnerability identified in CVE-2022-25447.
How can I fix CVE-2022-25447?
To fix CVE-2022-25447, users should update their Tenda AC6 firmware to a version that is not affected by this issue.
Where can I find more information about CVE-2022-25447?
More information about CVE-2022-25447 can be found at this reference: https://github.com/EPhaha/IOT_vuln/tree/main/Tenda/AC6/4