CVE-2022-25456: Critical severity tenda ac6 firmware vulnerability
Published Mar 18, 2022
·Updated
Tenda AC6 v15.03.05.09multi was discovered to contain a stack overflow via the security5g parameter in the WifiBasicSet function.
Affected Software
2 affected components
Tenda Ac6 Firmware=15.03.05.09
Tenda AC6
Event History
Mar 18, 2022
CVE Published
via MITRE·08:53 PM
Data Sourced
via MITRE·08:53 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this Tenda AC6 issue?
The vulnerability ID for this Tenda AC6 issue is CVE-2022-25456.
2
What is the severity level of CVE-2022-25456?
CVE-2022-25456 has a severity level of critical (9.8).
3
How does the vulnerability in Tenda AC6 occur?
The vulnerability in Tenda AC6 occurs due to a stack overflow triggered by the security_5g parameter in the WifiBasicSet function.
4
Which software versions of Tenda AC6 are affected by CVE-2022-25456?
The software version affected by CVE-2022-25456 is Tenda Ac6 Firmware version 15.03.05.09.
5
Is Tenda AC6 vulnerable to CVE-2022-25456?
Yes, Tenda AC6 is vulnerable to CVE-2022-25456.