CVE-2022-25449: Critical severity tenda ac6 firmware vulnerability
Published Mar 18, 2022
·Updated
Tenda AC6 v15.03.05.09multi was discovered to contain a stack overflow via the deviceId parameter in the saveParentControlInfo function.
Affected Software
2 affected components
Tenda Ac6 Firmware=15.03.05.09
Tenda AC6
Event History
Mar 18, 2022
CVE Published
via MITRE·08:53 PM
Data Sourced
via MITRE·08:53 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for Tenda AC6 stack overflow?
The vulnerability ID for Tenda AC6 stack overflow is CVE-2022-25449.
2
What is the severity rating of CVE-2022-25449?
CVE-2022-25449 has a severity rating of 9.8 (critical).
3
How does the vulnerability in Tenda AC6 occur?
The vulnerability in Tenda AC6 occurs through a stack overflow in the saveParentControlInfo function due to the deviceId parameter.
4
Which version of Tenda AC6 firmware is affected by CVE-2022-25449?
The Tenda AC6 firmware version 15.03.05.09 is affected by CVE-2022-25449.
5
Is the Tenda AC6 device itself vulnerable to CVE-2022-25449?
No, the Tenda AC6 device itself is not vulnerable to CVE-2022-25449.