First published: Fri Apr 07 2023(Updated: )
Tenda AC10 US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via the sub_45EC1C function. This vulnerability allows attackers to cause a Denial of Service (DoS) or execute arbitrary code via a crafted payload.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tenda Ac10 Firmware | =16.03.10.13_cn | |
Tenda AC10 | =4.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-27018 is critical with a CVSS score of 9.8.
The vulnerability in Tenda AC10 US_AC10V4.0si_V16.03.10.13_cn is a stack overflow in the sub_45EC1C function.
An attacker can cause a Denial of Service (DoS) or execute arbitrary code using a crafted payload in CVE-2023-27018.
To fix the vulnerability in Tenda AC10 US_AC10V4.0si_V16.03.10.13_cn, it is recommended to update to a patched version of the firmware.
You can find more information about CVE-2023-27018 at the following reference link: [GitHub - DrizzlingSun/Tenda](https://github.com/DrizzlingSun/Tenda/blob/main/AC10/7/7.md).