CVE-2022-28972: High severity tenda ax1806 firmware vulnerability
Published May 6, 2022
·Updated
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the timeZone parameter in the function formfastsettingwifiset. This vulnerability allows attackers to cause a Denial of Service (DoS).
Affected Software
2 affected components
Tenda Ax1806 Firmware=1.0.0.1
Tenda AX1806
Event History
May 6, 2022
CVE Published
via MITRE·01:08 PM
Data Sourced
via MITRE·01:08 PM
Description
Frequently Asked Questions
1
What is CVE-2022-28972?
CVE-2022-28972 is a vulnerability in Tenda AX1806 v1.0.0.1 firmware that allows attackers to cause a Denial of Service (DoS) via a stack overflow in the timeZone parameter in the function form_fast_setting_wifi_set.
2
How severe is CVE-2022-28972?
CVE-2022-28972 has a severity rating of 7.5, which is considered high.
3
What software is affected by CVE-2022-28972?
The Tenda AX1806 v1.0.0.1 firmware is affected by CVE-2022-28972.
4
What is the Common Weakness Enumeration (CWE) ID for CVE-2022-28972?
The CWE ID for CVE-2022-28972 is 787.
5
Is Tenda AX1806 vulnerable to CVE-2022-28972?
No, Tenda AX1806 is not vulnerable to CVE-2022-28972.