CVE-2022-25450: Critical severity tenda ac6 firmware vulnerability
Published Mar 18, 2022
·Updated
Tenda AC6 V15.03.05.09multi was discovered to contain a stack overflow via the list parameter in the SetVirtualServerCfg function.
Affected Software
2 affected components
Tenda Ac6 Firmware=15.03.05.09
Tenda AC6
Event History
Mar 18, 2022
CVE Published
via MITRE·08:53 PM
Data Sourced
via MITRE·08:53 PM
Description
Frequently Asked Questions
1
What is CVE-2022-25450?
CVE-2022-25450 is a vulnerability found in Tenda AC6 V15.03.05.09_multi firmware, which allows for a stack overflow through the list parameter in the SetVirtualServerCfg function.
2
What is the severity of CVE-2022-25450?
CVE-2022-25450 has a severity rating of critical with a CVSS score of 9.8.
3
How does CVE-2022-25450 impact Tenda AC6 firmware version 15.03.05.09?
CVE-2022-25450 affects Tenda AC6 firmware version 15.03.05.09, allowing for a stack overflow attack.
4
Is Tenda AC6 firmware version 15.03.05.09 vulnerable to CVE-2022-25450?
Yes, Tenda AC6 firmware version 15.03.05.09 is vulnerable to CVE-2022-25450.
5
How can I mitigate CVE-2022-25450?
To mitigate CVE-2022-25450, it is recommended to update to a patched version of the Tenda AC6 firmware.