CVE-2023-27062: Buffer Overflow
Published Mar 13, 2023
·Updated
Tenda V15V1.0 was discovered to contain a buffer overflow vulnerability via the gotoUrl parameter in the formPortalAuth function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request.
Affected Software
4 affected components
Tenda W15e Firmware=15.11.0.14
Tenda W15E
All of the following
Tenda W15e Firmware=15.11.0.14
Tenda W15E
Event History
Mar 13, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-27062?
CVE-2023-27062 is considered a medium severity vulnerability due to its potential to cause Denial of Service.
2
How do I fix CVE-2023-27062?
To fix CVE-2023-27062, update the Tenda W15e firmware to the latest version that addresses this vulnerability.
3
What causes the CVE-2023-27062 vulnerability?
CVE-2023-27062 is caused by a buffer overflow in the formPortalAuth function via the gotoUrl parameter.
4
What impact does CVE-2023-27062 have on affected devices?
The impact of CVE-2023-27062 on affected devices includes the potential for Denial of Service, which can disrupt normal operation.
5
Which version of the Tenda firmware is affected by CVE-2023-27062?
CVE-2023-27062 affects Tenda W15e firmware version 15.11.0.14.