CVE-2022-37176: Critical severity Tendacn Ac6 Firmware vulnerability
Tenda AC6(AC1200) v5.0 Firmware v02.03.01.114 and below contains a vulnerability which allows attackers to remove the Wi-Fi password and force the device into open security mode via a crafted packet sent to goform/setWizard.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Tenda AC6 (AC1200) Firmwareto a version that resolves this vulnerability.Fixed in v02.03.01.114 and below
Event History
Frequently Asked Questions
What is CVE-2022-37176?
CVE-2022-37176 is a vulnerability in Tenda AC6(AC1200) v5.0 Firmware v02.03.01.114 and below that allows attackers to remove the Wi-Fi password and force the device into open security mode.
What is the severity of CVE-2022-37176?
The severity of CVE-2022-37176 is critical with a CVSS score of 9.8.
How does CVE-2022-37176 impact Tenda AC6(AC1200) firmware?
CVE-2022-37176 allows attackers to remove the Wi-Fi password and force the device into open security mode by sending a crafted packet to goform/setWizard.
Which version of Tenda AC6(AC1200) firmware is affected by CVE-2022-37176?
Tenda AC6(AC1200) v5.0 Firmware v02.03.01.114 and below are affected by CVE-2022-37176.
How can I fix CVE-2022-37176 in Tenda AC6(AC1200) firmware?
To fix CVE-2022-37176, it is recommended to update Tenda AC6(AC1200) firmware to a version that is not affected.