CVE-2023-27021: Critical severity tenda ac10v4 vulnerability
Tenda AC10 USAC10V4.0siV16.03.10.13cn was discovered to contain a stack overflow via the formSetFirewallCfg function. This vulnerability allows attackers to cause a Denial of Service (DoS) or execute arbitrary code via a crafted payload.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-27021?
CVE-2023-27021 refers to a vulnerability in Tenda AC10 US_AC10V4.0si_V16.03.10.13_cn that allows attackers to cause a Denial of Service (DoS) or execute arbitrary code via a crafted payload.
How severe is CVE-2023-27021?
CVE-2023-27021 has a severity rating of 9.8, which is considered critical.
How can an attacker exploit CVE-2023-27021?
An attacker can exploit CVE-2023-27021 by sending a crafted payload to the formSetFirewallCfg function, which can cause a stack overflow and lead to a Denial of Service (DoS) or execution of arbitrary code.
Is Tenda AC10 firmware version 16.03.10.13_cn affected by CVE-2023-27021?
Yes, Tenda AC10 firmware version 16.03.10.13_cn is affected by CVE-2023-27021.
How can I fix CVE-2023-27021?
To fix CVE-2023-27021, it is recommended to update the Tenda AC10 firmware to a version that includes a patch for this vulnerability.