CVE-2022-42166: Critical severity Tenda Ac10 Firmware vulnerability
Published Oct 17, 2022
·Updated
Tenda AC10 V15.03.06.23 contains a Stack overflow vulnerability via /goform/formSetSpeedWan.
Affected Software
4 affected components
Tenda Ac10 Firmware=15.03.06.23
Tenda AC10
All of the following
Tenda Ac10 Firmware=15.03.06.23
Tenda AC10
Event History
Oct 17, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this Tenda AC10 firmware vulnerability?
The vulnerability ID for this Tenda AC10 firmware vulnerability is CVE-2022-42166.
2
What is the severity rating of CVE-2022-42166?
CVE-2022-42166 has a severity rating of 9.8 (critical).
3
How does CVE-2022-42166 affect Tenda AC10 V15.03.06.23 firmware?
CVE-2022-42166 affects Tenda AC10 V15.03.06.23 firmware by exploiting a stack overflow vulnerability via the /goform/formSetSpeedWan endpoint.
4
Is Tenda AC10 version 15.03.06.23 vulnerable to CVE-2022-42166?
Yes, Tenda AC10 version 15.03.06.23 is vulnerable to CVE-2022-42166.
5
How can I mitigate the CVE-2022-42166 vulnerability on Tenda AC10 V15.03.06.23 firmware?
To mitigate the CVE-2022-42166 vulnerability on Tenda AC10 V15.03.06.23 firmware, it is recommended to update to the latest firmware version provided by Tenda.