CVE-2022-28917: High severity tenda ax12 firmware vulnerability
Published May 18, 2022
·Updated
Tenda AX12 v22.03.01.21cn was discovered to contain a stack overflow via the lanIp parameter in /goform/AdvSetLanIp.
Affected Software
2 affected components
Tenda Ax12 Firmware=22.03.01.21_cn
Tenda AX12
Event History
May 18, 2022
CVE Published
via MITRE·03:28 PM
Data Sourced
via MITRE·03:28 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2022-28917?
The severity of CVE-2022-28917 is high.
2
What is CVE-2022-28917?
CVE-2022-28917 is a vulnerability discovered in Tenda AX12 v22.03.01.21_cn that allows a stack overflow via the lanIp parameter in /goform/AdvSetLanIp.
3
Which software versions are affected by CVE-2022-28917?
Tenda AX12 v22.03.01.21_cn is affected by CVE-2022-28917.
4
How can I fix CVE-2022-28917?
To fix CVE-2022-28917, it is recommended to update to a non-vulnerable version of Tenda AX12 firmware.
5
Where can I find more information about CVE-2022-28917?
You can find more information about CVE-2022-28917 at the following reference: https://github.com/NSSCYCTFER/SRC-CVE