First published: Fri Dec 30 2022(Updated: )
Tenda A15 V15.13.07.13 was discovered to contain a stack overflow via the wepkey1 parameter at /goform/WifiBasicSet.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tenda A15 Firmware | =15.13.07.13 | |
Tenda A15 | ||
All of | ||
Tenda A15 Firmware | =15.13.07.13 | |
Tenda A15 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-47118 is classified with a high severity due to the potential for a stack overflow leading to remote code execution.
To mitigate CVE-2022-47118, update your Tenda A15 firmware to the latest version available from Tenda.
CVE-2022-47118 specifically affects Tenda A15 firmware version 15.13.07.13.
The attack vector for CVE-2022-47118 involves making a malicious request containing a specially crafted 'wepkey1' parameter.
Yes, successful exploitation of CVE-2022-47118 can potentially allow an attacker to gain unauthorized access and control over the affected device.