CVE-2022-45649: Buffer Overflow
Published Dec 2, 2022
·Updated
Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the endIp parameter in the formSetPPTPServer function.
Affected Software
4 affected components
Tendacn Ac6 Firmware=15.03.05.19
Tendacn Ac6=1.0
All of the following
Tendacn Ac6 Firmware=15.03.05.19
Tendacn Ac6=1.0
Event History
Dec 2, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2022-45649?
CVE-2022-45649 is a buffer overflow vulnerability in Tenda AC6V1.0 V15.03.05.19 routers.
2
How does CVE-2022-45649 work?
CVE-2022-45649 exploits a buffer overflow in the formSetPPTPServer function via the endIp parameter.
3
What is the severity of CVE-2022-45649?
CVE-2022-45649 has a severity score of 7.5 (high).
4
How can I fix CVE-2022-45649?
To fix CVE-2022-45649, update the Tenda AC6V1.0 firmware to version 15.03.05.19 or higher.
5
Are all Tenda AC6V1.0 routers affected by CVE-2022-45649?
No, only Tenda AC6V1.0 routers with firmware version 15.03.05.19 are affected by CVE-2022-45649.