CVE-2023-40892: Critical severity Tenda Ac8v4 Firmware vulnerability
Published Aug 24, 2023
·Updated
Tenda AC8 v4 USAC8V4.0siV16.03.34.06cn was discovered to contain a stack overflow via parameter schedStartTime and schedEndTime at /goform/openSchedWifi.
Affected Software
4 affected components
Tenda Ac8v4 Firmware=16.03.34.06
Tenda AC8V4
All of the following
Tenda Ac8 Firmware=16.03.34.06
Tenda AC8V4
Event History
Aug 24, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-40892?
The severity of CVE-2023-40892 is critical with a CVSS score of 9.8.
2
How does CVE-2023-40892 affect Tenda AC8 v4 firmware version 16.03.34.06?
CVE-2023-40892 affects Tenda AC8 v4 firmware version 16.03.34.06 by causing a stack overflow through the parameter schedStartTime and schedEndTime at /goform/openSchedWifi.
3
Is Tenda AC8V4 vulnerable to CVE-2023-40892?
No, Tenda AC8V4 is not vulnerable to CVE-2023-40892.
4
How can I fix the stack overflow vulnerability in Tenda AC8 v4 firmware version 16.03.34.06?
To fix the stack overflow vulnerability in Tenda AC8 v4 firmware version 16.03.34.06, it is recommended to update to a patched version provided by Tenda.
5
What is the Common Weakness Enumeration (CWE) ID associated with CVE-2023-40892?
The Common Weakness Enumeration (CWE) ID associated with CVE-2023-40892 is CWE-787.