CVE-2023-40894: Critical severity Tenda Ac8v4 Firmware vulnerability
Published Aug 24, 2023
·Updated
Tenda AC8 v4 USAC8V4.0siV16.03.34.06cn was discovered to contain a stack overflow via parameter list at /goform/SetStaticRouteCfg.
Affected Software
4 affected components
Tenda Ac8v4 Firmware=16.03.34.06
Tenda AC8V4
All of the following
Tenda Ac8 Firmware=16.03.34.06
Tenda AC8V4
Event History
Aug 24, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID of Tenda AC8 v4?
The vulnerability ID of Tenda AC8 v4 is CVE-2023-40894.
2
What is the severity of CVE-2023-40894?
The severity of CVE-2023-40894 is critical with a CVSS score of 9.8.
3
How does Tenda AC8 v4 firmware version 16.03.34.06 get affected by CVE-2023-40894?
Tenda AC8 v4 firmware version 16.03.34.06 is affected by CVE-2023-40894 due to a stack overflow vulnerability in the 'goform/SetStaticRouteCfg' parameter.
4
Is Tenda AC8 v4 itself vulnerable to CVE-2023-40894?
No, Tenda AC8 v4 itself is not vulnerable to CVE-2023-40894.
5
How can I fix the CVE-2023-40894 vulnerability in Tenda AC8 v4?
To fix the CVE-2023-40894 vulnerability in Tenda AC8 v4, it is recommended to update the firmware to a version that includes a patch for this vulnerability.