First published: Tue Nov 14 2023(Updated: )
Buffer Overflow vulnerability in Tenda AX1803 v1.0.0.1_2994 and earlier allows attackers to run arbitrary code via /goform/SetOnlineDevName.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Tenda AX1803 Firmware | ||
Tenda AX1803 Firmware | <=1.0.0.1_2994 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-45781 is a buffer overflow vulnerability in Tenda AX1803 v1.0.0.1_2994 and earlier versions.
CVE-2022-45781 allows attackers to run arbitrary code by exploiting the /goform/SetOnlineDevName functionality.
CVE-2022-45781 has a severity rating of 8.8 (high).
Tenda AX1803 v1.0.0.1_2994 and earlier versions are affected by CVE-2022-45781.
No, Tenda AX1803 is not vulnerable to CVE-2022-45781.
To fix CVE-2022-45781, update Tenda AX1803 firmware to a version later than v1.0.0.1_2994.
You can find more information about CVE-2022-45781 at this [link](https://www.cnblogs.com/FALL3N/p/16813932.html).
The CWEs associated with CVE-2022-45781 are CWE-119 (Improper Restriction of Operations within the Bounds of a Memory Buffer) and CWE-787 (Out-of-bounds Write).