CVE-2023-25216: Critical severity tenda ac5 firmware vulnerability
Tenda AC5 USAC5V1.0RTLV15.03.06.28 was discovered to contain a stack overflow via the formSetFirewallCfg function. This vulnerability allows attackers to cause a Denial of Service (DoS) or execute arbitrary code via a crafted payload.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-25216?
CVE-2023-25216 is a vulnerability found in Tenda AC5 US_AC5V1.0RTL_V15.03.06.28 firmware that allows for a stack overflow via the formSetFirewallCfg function, leading to a Denial of Service (DoS) or arbitrary code execution.
How severe is CVE-2023-25216?
CVE-2023-25216 has a severity rating of 9.8, which is considered critical.
What software is affected by CVE-2023-25216?
Tenda AC5 US_AC5V1.0RTL_V15.03.06.28 firmware with version 15.03.06.28 is affected by CVE-2023-25216.
What is the potential impact of CVE-2023-25216?
CVE-2023-25216 allows attackers to cause a Denial of Service (DoS) or execute arbitrary code by exploiting the stack overflow vulnerability in Tenda AC5 US_AC5V1.0RTL_V15.03.06.28 firmware.
Is there a fix available for CVE-2023-25216?
At the moment, there is no known fix or patch for CVE-2023-25216. It is recommended to update to a newer firmware version when one becomes available.