CVE-2022-43102: Critical severity Tenda Ac23 Firmware vulnerability
Published Nov 3, 2022
·Updated
Tenda AC23 V16.03.07.45cn was discovered to contain a stack overflow via the timeZone parameter in the fromSetSysTime function.
Affected Software
4 affected components
Tenda Ac23 Firmware=16.03.07.45_cn
Tenda AC23
All of the following
Tenda Ac23 Firmware=16.03.07.45_cn
Tenda AC23
Event History
Nov 3, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2022-43102?
CVE-2022-43102 is a vulnerability discovered in Tenda AC23 V16.03.07.45_cn firmware, which allows a stack overflow via the timeZone parameter in the fromSetSysTime function.
2
How severe is CVE-2022-43102?
CVE-2022-43102 has a severity rating of 9.8 (Critical).
3
How can CVE-2022-43102 be exploited?
CVE-2022-43102 can be exploited by sending a specially-crafted timeZone parameter to the fromSetSysTime function in the Tenda AC23 V16.03.07.45_cn firmware.
4
What is the affected software version?
The affected software version is Tenda AC23 V16.03.07.45_cn firmware.
5
Is Tenda AC23 V16.03.07.45_cn firmware vulnerable to CVE-2022-43102?
Yes, Tenda AC23 V16.03.07.45_cn firmware is vulnerable to CVE-2022-43102.