CVE-2022-42167: Critical severity Tenda Ac10 Firmware vulnerability
Published Oct 17, 2022
·Updated
Tenda AC10 V15.03.06.23 contains a Stack overflow vulnerability via /goform/formSetFirewallCfg.
Affected Software
4 affected components
Tenda Ac10 Firmware=15.03.06.23
Tenda AC10
All of the following
Tenda Ac10 Firmware=15.03.06.23
Tenda AC10
Event History
Oct 17, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2022-42167?
CVE-2022-42167 is a stack overflow vulnerability found in Tenda AC10 V15.03.06.23 firmware through the /goform/formSetFirewallCfg endpoint.
2
How severe is CVE-2022-42167?
CVE-2022-42167 has a severity rating of 9.8 (Critical) on a scale of 1 to 10.
3
What software versions are affected by CVE-2022-42167?
Tenda AC10 V15.03.06.23 firmware is affected by CVE-2022-42167.
4
How can I fix CVE-2022-42167?
Updating Tenda AC10 firmware to a version that patches the vulnerability will fix CVE-2022-42167.
5
Where can I find more information about CVE-2022-42167?
You can find more information about CVE-2022-42167 on the following link: [https://github.com/z1r00/IOT_Vul/blob/main/Tenda/AC10/formSetFirewallCfg/readme.md](https://github.com/z1r00/IOT_Vul/blob/main/Tenda/AC10/formSetFirewallCfg/readme.md)