CVE-2023-25212: Critical severity tenda ac5 firmware vulnerability
Tenda AC5 USAC5V1.0RTLV15.03.06.28 was discovered to contain a stack overflow via the fromSetWirelessRepeat function. This vulnerability allows attackers to cause a Denial of Service (DoS) or execute arbitrary code via a crafted payload.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-25212?
CVE-2023-25212 is a vulnerability found in Tenda AC5 US_AC5V1.0RTL_V15.03.06.28 firmware that allows attackers to cause a Denial of Service (DoS) or execute arbitrary code.
How severe is CVE-2023-25212?
CVE-2023-25212 is classified as a critical vulnerability with a severity score of 9.8.
How can attackers exploit CVE-2023-25212?
Attackers can exploit CVE-2023-25212 by sending a crafted payload via the fromSetWirelessRepeat function, leading to a stack overflow and potentially causing a Denial of Service (DoS) or executing arbitrary code.
What versions of Tenda AC5 firmware are affected by CVE-2023-25212?
Tenda AC5 firmware version 15.03.06.28 is affected by CVE-2023-25212.
Is Tenda AC5 version 1.0 affected by CVE-2023-25212?
No, Tenda AC5 version 1.0 is not vulnerable to CVE-2023-25212.