CVE-2022-38567: High severity tenda m3 vulnerability
Published Aug 28, 2022
·Updated
Tenda M3 V1.0.0.12(4856) was discovered to contain a stack overflow vulnerability in the function formSetAdConfigInfo. This vulnerability allows attackers to cause a Denial of Service (DoS) via the authIPs parameter.
Affected Software
2 affected components
Tenda M3 Firmware=1.0.0.12\(4856\)
Tenda M3
Event History
Aug 28, 2022
CVE Published
via MITRE·04:46 PM
Data Sourced
via MITRE·04:46 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2022-38567?
CVE-2022-38567 is classified as a Denial of Service vulnerability.
2
How does CVE-2022-38567 affect the Tenda M3 firmware?
CVE-2022-38567 allows attackers to exploit a stack overflow in the Tenda M3 firmware, potentially leading to service disruption.
3
What is the potential impact of CVE-2022-38567?
The potential impact of CVE-2022-38567 is the ability to cause a Denial of Service through the authIPs parameter.
4
Which versions of Tenda M3 are affected by CVE-2022-38567?
CVE-2022-38567 affects Tenda M3 firmware version 1.0.0.12(4856).
5
How can I mitigate CVE-2022-38567?
To mitigate CVE-2022-38567, it is recommended to update the Tenda M3 firmware to the latest version provided by the manufacturer.