First published: Fri Jul 14 2023(Updated: )
Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow in the page parameter in the function fromRouteStatic.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tenda F1202 Firmware | =1.2.0.20\(408\) | |
Tenda F1202 | ||
Tenda Fh1202 Firmware | =1.2.0.19_en | |
Tenda Fh1202 | ||
Tenda F1202 Firmware | =1.0br | |
Tenda Ac7 Firmware | =1.0 | |
Tenda AC7 | ||
Tenda Pw201a Firmware | ||
Tenda Pw201a |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-37714 is critical with a severity value of 9.
The affected software for CVE-2023-37714 includes Tenda F1202 Firmware version 1.2.0.20(408) and Tenda Fh1202 Firmware version 1.2.0.19_en.
CVE-2023-37714 is a stack overflow vulnerability discovered in Tenda F1202 and Fh1202 routers, allowing an attacker to execute arbitrary code.
To fix CVE-2023-37714, it is recommended to update the firmware on affected Tenda F1202 and Fh1202 routers to the latest version provided by Tenda.
More information about CVE-2023-37714 can be found at the following reference link: [GitHub - IoT-Vulns - Tenda fromRouteStatic](https://github.com/FirmRec/IoT-Vulns/blob/main/tenda/fromRouteStatic/report.md)