First published: Tue Sep 10 2024(Updated: )
Command Injection vulnerability in goform/SetIPTVCfg interface of Tenda AC15 V15.03.05.20 allows remote attackers to run arbitrary commands via crafted POST request.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Tenda AC15 Firmware | =15.03.05.20 | |
Tenda AC15 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-36103 has been classified as a high severity vulnerability due to its ability to allow remote command execution.
To mitigate CVE-2023-36103, it is recommended to update Tenda AC15 firmware to the latest version that addresses this vulnerability.
CVE-2023-36103 specifically affects the Tenda AC15 with firmware version 15.03.05.20.
CVE-2023-36103 is a command injection vulnerability that allows attackers to execute arbitrary commands remotely.
CVE-2023-36103 works by accepting crafted POST requests at the goform/SetIPTVCfg interface, which can inject commands into the system.