First published: Wed Aug 31 2022(Updated: )
Tenda AC9 V15.03.05.19 was discovered to contain a stack overflow via the time parameter at /goform/SetLEDCfg.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tenda Ac9 Firmware | =15.03.05.19 | |
Tenda AC9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-36570 refers to a stack overflow vulnerability in Tenda AC9 V15.03.05.19 firmware.
CVE-2022-36570 allows an attacker to trigger a stack overflow through the time parameter at /goform/SetLEDCfg.
CVE-2022-36570 has a severity score of 7.2 (high).
To fix CVE-2022-36570, update your Tenda AC9 firmware to a version that addresses the vulnerability.
You can find more information about CVE-2022-36570 at the following reference: [https://github.com/CyberUnicornIoT/IoTvuln/blob/main/Tenda_ac9/1/tenda_ac9_SetLEDCfg.md](https://github.com/CyberUnicornIoT/IoTvuln/blob/main/Tenda_ac9/1/tenda_ac9_SetLEDCfg.md)