CVE-2022-36570: High severity tenda ac9 vulnerability
Published Aug 31, 2022
·Updated
Tenda AC9 V15.03.05.19 was discovered to contain a stack overflow via the time parameter at /goform/SetLEDCfg.
Affected Software
2 affected components
Tenda Ac9 Firmware=15.03.05.19
Tenda Ac9
Event History
Aug 31, 2022
CVE Published
via MITRE·07:03 PM
Data Sourced
via MITRE·07:03 PM
Description
Frequently Asked Questions
1
What is CVE-2022-36570?
CVE-2022-36570 refers to a stack overflow vulnerability in Tenda AC9 V15.03.05.19 firmware.
2
How does CVE-2022-36570 affect Tenda AC9 V15.03.05.19 firmware?
CVE-2022-36570 allows an attacker to trigger a stack overflow through the time parameter at /goform/SetLEDCfg.
3
What is the severity of CVE-2022-36570?
CVE-2022-36570 has a severity score of 7.2 (high).
4
How can I fix CVE-2022-36570?
To fix CVE-2022-36570, update your Tenda AC9 firmware to a version that addresses the vulnerability.
5
Where can I find more information about CVE-2022-36570?
You can find more information about CVE-2022-36570 at the following reference: [https://github.com/CyberUnicornIoT/IoTvuln/blob/main/Tenda_ac9/1/tenda_ac9_SetLEDCfg.md](https://github.com/CyberUnicornIoT/IoTvuln/blob/main/Tenda_ac9/1/tenda_ac9_SetLEDCfg.md)