CVE-2022-37798: Critical severity tenda ac1206 firmware vulnerability
Published Aug 25, 2022
·Updated
Tenda AC1206 V15.03.06.23 was discovered to contain a stack overflow via the list parameter at the function formSetVirtualSer.
Affected Software
2 affected components
Tenda Ac1206 Firmware=15.03.06.23
Tenda AC1206
Event History
Aug 25, 2022
CVE Published
via MITRE·02:04 PM
Data Sourced
via MITRE·02:04 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2022-37798?
The severity of CVE-2022-37798 is critical with a CVSS score of 9.8.
2
What is the affected software version of CVE-2022-37798?
The affected software version of CVE-2022-37798 is Tenda AC1206 Firmware 15.03.06.23.
3
How can the vulnerability be exploited?
The vulnerability can be exploited by sending a specially crafted request with a stack overflow via the list parameter to the function formSetVirtualSer.
4
How can I mitigate CVE-2022-37798?
To mitigate CVE-2022-37798, it is recommended to update to a patched version of Tenda AC1206 firmware as soon as it becomes available.
5
Where can I find more information about CVE-2022-37798?
More information about CVE-2022-37798 can be found at the following reference: https://github.com/Darry-lang1/vuln/tree/main/Tenda/AC1206/5