CVE-2023-25217: Critical severity tenda ac5 firmware vulnerability
Published Apr 7, 2023
·Updated
Tenda AC5 USAC5V1.0RTLV15.03.06.28 was discovered to contain a stack overflow via the formWifiBasicSet function. This vulnerability allows attackers to cause a Denial of Service (DoS) or execute arbitrary code via a crafted payload.
Affected Software
4 affected components
Tenda Ac5 Firmware=15.03.06.28
Tenda AC5=1.0
All of the following
Tenda Ac5 Firmware=15.03.06.28
Tenda AC5=1.0
Event History
Apr 7, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·02:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID of this issue is CVE-2023-25217.
2
What is the severity of CVE-2023-25217?
The severity of CVE-2023-25217 is critical with a severity value of 9.8.
3
How can this vulnerability be exploited?
This vulnerability can be exploited by attackers to cause a Denial of Service (DoS) or execute arbitrary code through a crafted payload.
4
What software is affected by CVE-2023-25217?
The Tenda AC5 firmware version 15.03.06.28 is affected by CVE-2023-25217.
5
Is Tenda AC5 version 1.0 affected by CVE-2023-25217?
No, Tenda AC5 version 1.0 is not affected by CVE-2023-25217.