CVE-2023-40797: Input Validation
In Tenda AC23 v16.03.07.45cn, the sub4781A4 function does not validate the parameters entered by the user, resulting in a post-authentication stack overflow vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-40797?
CVE-2023-40797 refers to a post-authentication stack overflow vulnerability in Tenda AC23 v16.03.07.45_cn firmware.
What is the severity of CVE-2023-40797?
CVE-2023-40797 has a severity rating of 8.8, which is considered high.
How does CVE-2023-40797 affect Tenda AC23 firmware?
CVE-2023-40797 affects Tenda AC23 firmware version 16.03.07.45_cn, allowing for a post-authentication stack overflow vulnerability.
How can I fix CVE-2023-40797?
To fix CVE-2023-40797, it is recommended to update Tenda AC23 firmware to a version that addresses this vulnerability.
Where can I find more information about CVE-2023-40797?
You can find more information about CVE-2023-40797 at the following reference: [GitHub - lst-oss/Vulnerability](https://github.com/lst-oss/Vulnerability/tree/main/Tenda/AC23/sub_4781A4)