CVE-2022-37811: Critical severity tenda ac1206 firmware vulnerability
Published Aug 25, 2022
·Updated
Tenda AC1206 V15.03.06.23 was discovered to contain a stack overflow via the startIp parameter in the function formSetPPTPServer.
Affected Software
2 affected components
Tenda Ac1206 Firmware=15.03.06.23
Tenda AC1206
Event History
Aug 25, 2022
CVE Published
via MITRE·02:05 PM
Data Sourced
via MITRE·02:05 PM
Description
Frequently Asked Questions
1
What is CVE-2022-37811?
CVE-2022-37811 refers to a stack overflow vulnerability in Tenda AC1206 V15.03.06.23, specifically in the function formSetPPTPServer.
2
What is the severity of CVE-2022-37811?
CVE-2022-37811 has a severity rating of 9.8 (Critical).
3
How does CVE-2022-37811 affect Tenda AC1206 V15.03.06.23?
CVE-2022-37811 affects Tenda AC1206 V15.03.06.23 by exploiting a stack overflow vulnerability in the startIp parameter of the formSetPPTPServer function.
4
Is Tenda AC1206 V15.03.06.23 the only affected software version?
Yes, Tenda AC1206 V15.03.06.23 is the only affected software version by CVE-2022-37811.
5
How can I mitigate the CVE-2022-37811 vulnerability?
To mitigate the CVE-2022-37811 vulnerability, it is recommended to update Tenda AC1206 firmware to a version that fixes the stack overflow issue.