CVE-2023-40838: OS Command Injection
Published Aug 30, 2023
·Updated
Tenda AC6 USAC6V1.0BRV15.03.05.16multiTD01.bin function 'sub3A1D0' contains a command execution vulnerability.
Affected Software
2 affected components
Tenda Ac6 Firmware=15.03.05.16
Tenda AC6=1.0
Event History
Aug 30, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID of Tenda AC6?
The vulnerability ID of Tenda AC6 is CVE-2023-40838.
2
What is the severity level of CVE-2023-40838?
The severity level of CVE-2023-40838 is critical (9.8).
3
How does the vulnerability affect Tenda AC6?
The vulnerability affects Tenda AC6 firmware version 15.03.05.16.
4
Is Tenda AC6 version 1.0 vulnerable to CVE-2023-40838?
No, Tenda AC6 version 1.0 is not vulnerable to CVE-2023-40838.
5
How can I fix CVE-2023-40838?
To fix CVE-2023-40838, update your Tenda AC6 firmware to a version that is not affected by the vulnerability.