CVE-2023-38931: Critical severity Tenda Ac10 Firmware vulnerability
Tenda AC10 V1.0 V15.03.06.23, AC1206 V15.03.06.23, AC8 v4 V16.03.34.06, AC6 V2.0 V15.03.06.23, AC7 V1.0 V15.03.06.44, F1203 V2.0.1.6, AC5 V1.0 V15.03.06.28, AC10 v4.0 V16.03.10.13 and FH1203 V2.0.1.6 were discovered to contain a stack overflow via the list parameter in the setaccount function.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this issue?
The vulnerability ID is CVE-2023-38931.
What is the severity of CVE-2023-38931?
The severity of CVE-2023-38931 is critical with a severity value of 9.8.
Which Tenda devices are affected by CVE-2023-38931?
Tenda AC10 V1.0 V15.03.06.23, AC1206 V15.03.06.23, AC8 v4 V16.03.34.06, AC6 V2.0 V15.03.06.23, AC7 V1.0 V15.03.06.44, F1203 V2.0.1.6, AC5 V1.0 V15.03.06.28, AC10 v4.0 V16.03.10.13, and FH1203 V2.0.1.6 are affected by CVE-2023-38931.
What is the impact of CVE-2023-38931?
CVE-2023-38931 allows attackers to perform a stack overflow via the list parameter in the setaccount function.
Is there a fix for CVE-2023-38931?
At the moment, there is no known fix for CVE-2023-38931. It is recommended to check with Tenda for any available patches or updates.