CVE-2022-40874: High severity Tenda Ax1803 Firmware vulnerability
Published Oct 27, 2022
·Updated
Tenda AX1803 v1.0.0.1 was discovered to contain a heap overflow vulnerability in the GetParentControlInfo function, which can cause a denial of service attack through a carefully constructed http request.
Affected Software
4 affected components
Tenda Ax1803 Firmware=1.0.0.1
Tenda ax1803
All of the following
Tenda Ax1803 Firmware=1.0.0.1
Tenda ax1803
Event History
Oct 27, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for the Tenda AX1803 router?
The vulnerability ID for the Tenda AX1803 router is CVE-2022-40874.
2
What is the title of the vulnerability?
The title of the vulnerability is "Tenda AX1803 v1.0.0.1 heap overflow vulnerability in GetParentControlInfo function."
3
What is the severity of CVE-2022-40874?
The severity of CVE-2022-40874 is high with a CVSS score of 7.5.
4
What software version is affected by CVE-2022-40874?
The software version affected by CVE-2022-40874 is Tenda Ax1803 Firmware 1.0.0.1.
5
How can the vulnerability be exploited?
The vulnerability can be exploited through a carefully constructed HTTP request, causing a denial of service attack.