CVE-2023-40896: Critical severity Tenda Ac8v4 Firmware vulnerability
Published Aug 24, 2023
·Updated
Tenda AC8 v4 USAC8V4.0siV16.03.34.06cn was discovered to contain a stack overflow via parameter list and bindnum at /goform/SetIpMacBind.
Affected Software
4 affected components
Tenda Ac8v4 Firmware=16.03.34.06
Tenda AC8V4
All of the following
Tenda Ac8 Firmware=16.03.34.06
Tenda AC8V4
Event History
Aug 24, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for Tenda AC8 v4 US_AC8V4.0si_V16.03.34.06_cn?
The vulnerability ID for Tenda AC8 v4 US_AC8V4.0si_V16.03.34.06_cn is CVE-2023-40896.
2
What is the severity of CVE-2023-40896?
The severity of CVE-2023-40896 is critical with a severity value of 9.8.
3
How does Tenda AC8 v4 US_AC8V4.0si_V16.03.34.06_cn get exploited?
Tenda AC8 v4 US_AC8V4.0si_V16.03.34.06_cn can be exploited through a stack overflow via the parameter list and bindnum at /goform/SetIpMacBind.
4
Is Tenda AC8 v4 US_AC8V4.0si_V16.03.34.06_cn the only affected software?
No, Tenda AC8 v4 US_AC8V4.0si_V16.03.34.06_cn is not the only affected software. Tenda Ac8v4 Firmware version 16.03.34.06 is also affected.
5
How can I fix the vulnerability in Tenda AC8 v4 US_AC8V4.0si_V16.03.34.06_cn?
To fix the vulnerability in Tenda AC8 v4 US_AC8V4.0si_V16.03.34.06_cn, it is recommended to update to a patched version of the firmware.