CVE-2023-25220: Critical severity tenda ac5 firmware vulnerability
Published Apr 7, 2023
·Updated
Tenda AC5 USAC5V1.0RTLV15.03.06.28 was discovered to contain a stack overflow via the addwhitenode function. This vulnerability allows attackers to cause a Denial of Service (DoS) or execute arbitrary code via a crafted payload.
Affected Software
4 affected components
Tenda Ac5 Firmware=15.03.06.28
Tenda AC5=1.0
All of the following
Tenda Ac5 Firmware=15.03.06.28
Tenda AC5=1.0
Event History
Apr 7, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·02:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2023-25220.
2
What is the severity of CVE-2023-25220?
The severity of CVE-2023-25220 is critical, with a severity value of 9.8.
3
What is the affected software version?
The affected software version is Tenda AC5 firmware 15.03.06.28.
4
What is the impact of CVE-2023-25220?
CVE-2023-25220 allows attackers to cause a Denial of Service (DoS) or execute arbitrary code via a crafted payload.
5
Are there any fixes or patches available for CVE-2023-25220?
It is recommended to check the vendor's website or contact Tenda for information on available fixes or patches.