CVE-2022-47118: Critical severity tenda a15 vulnerability
Published Dec 30, 2022
·Updated
Tenda A15 V15.13.07.13 was discovered to contain a stack overflow via the wepkey1 parameter at /goform/WifiBasicSet.
Affected Software
4 affected components
All of the following
Tenda A15 Firmware=15.13.07.13
Tenda A15
Tenda A15 Firmware=15.13.07.13
Tenda A15
Event History
Dec 30, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-47118?
CVE-2022-47118 is classified with a high severity due to the potential for a stack overflow leading to remote code execution.
2
How do I fix CVE-2022-47118?
To mitigate CVE-2022-47118, update your Tenda A15 firmware to the latest version available from Tenda.
3
What versions are affected by CVE-2022-47118?
CVE-2022-47118 specifically affects Tenda A15 firmware version 15.13.07.13.
4
What is the attack vector for CVE-2022-47118?
The attack vector for CVE-2022-47118 involves making a malicious request containing a specially crafted 'wepkey1' parameter.
5
Can CVE-2022-47118 lead to data breaches?
Yes, successful exploitation of CVE-2022-47118 can potentially allow an attacker to gain unauthorized access and control over the affected device.