CVE-2022-25452: Critical severity tenda ac6 firmware vulnerability
Published Mar 18, 2022
·Updated
Tenda AC6 v15.03.05.09multi was discovered to contain a stack overflow via the URLs parameter in the saveParentControlInfo function.
Affected Software
2 affected components
Tenda Ac6 Firmware=15.03.05.09
Tenda AC6
Event History
Mar 18, 2022
CVE Published
via MITRE·08:53 PM
Data Sourced
via MITRE·08:53 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for Tenda AC6 v15.03.05.09_multi?
The vulnerability ID for Tenda AC6 v15.03.05.09_multi is CVE-2022-25452.
2
What is the severity of CVE-2022-25452?
The severity of CVE-2022-25452 is critical with a severity value of 9.8.
3
How can Tenda AC6 v15.03.05.09_multi be exploited?
Tenda AC6 v15.03.05.09_multi can be exploited through a stack overflow via the URLs parameter in the saveParentControlInfo function.
4
Is Tenda AC6 v15.03.05.09_multi affected by the vulnerability?
Yes, Tenda AC6 v15.03.05.09_multi is affected by the vulnerability.
5
Is there a fix available for CVE-2022-25452?
It is recommended to update the Tenda AC6 firmware to a non-vulnerable version to fix the CVE-2022-25452 vulnerability.