CVE-2022-43104: Critical severity Tenda Ac23 Firmware vulnerability
Published Nov 3, 2022
·Updated
Tenda AC23 V16.03.07.45cn was discovered to contain a stack overflow via the wpapskcrypto parameter in the fromSetWirelessRepeat function.
Affected Software
4 affected components
Tenda Ac23 Firmware=16.03.07.45_cn
Tenda AC23
All of the following
Tenda Ac23 Firmware=16.03.07.45_cn
Tenda AC23
Event History
Nov 3, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID of this Tenda AC23 stack overflow vulnerability?
The vulnerability ID of this Tenda AC23 stack overflow vulnerability is CVE-2022-43104.
2
What is the severity of CVE-2022-43104?
The severity of CVE-2022-43104 is critical with a severity value of 9.8.
3
How does the stack overflow occur in Tenda AC23 V16.03.07.45_cn?
The stack overflow occurs via the wpapsk_crypto parameter in the fromSetWirelessRepeat function.
4
Which software versions are affected by CVE-2022-43104?
The Tenda AC23 firmware version 16.03.07.45_cn is affected by CVE-2022-43104.
5
Is Tenda AC23 vulnerable to CVE-2022-43104?
Yes, Tenda AC23 with the firmware version 16.03.07.45_cn is vulnerable to CVE-2022-43104.