First published: Fri Mar 18 2022(Updated: )
Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the loginpwd parameter in the SetFirewallCfg function.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tenda Ac6 Firmware | =15.03.05.09 | |
Tenda AC6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-25454 is a vulnerability discovered in Tenda AC6 v15.03.05.09_multi firmware that allows for a stack overflow via the loginpwd parameter in the SetFirewallCfg function.
CVE-2022-25454 has a severity rating of 9.8 out of 10, making it critical.
The Tenda AC6 firmware version 15.03.05.09 is affected by CVE-2022-25454.
The vulnerability CVE-2022-25454 can be exploited by sending a specially crafted value to the loginpwd parameter in the SetFirewallCfg function.
No, Tenda AC6 hardware is not vulnerable to CVE-2022-25454.