CVE-2023-40942: Critical severity tenda ac9 v1.0 firmware vulnerability
Published Sep 7, 2023
·Updated
Tenda AC9 V3.0BRV15.03.06.42multiTD01 was discovered stack overflow via parameter 'firewallvalue' at url /goform/SetFirewallCfg.
Affected Software
2 affected components
Tendacn Ac9 Firmware=15.03.06.42_multi_td0
Tendacn Ac9=3.0
Event History
Sep 7, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is CVE-2023-40942 about?
CVE-2023-40942 is a vulnerability in Tenda AC9 V3.0BR_V15.03.06.42_multi_TD01 router firmware that allows a stack overflow via the 'firewall_value' parameter in the /goform/SetFirewallCfg URL.
2
How severe is CVE-2023-40942?
CVE-2023-40942 has a severity score of 9.8, indicating that it is critical.
3
Which software versions are affected by CVE-2023-40942?
Tenda AC9 V3.0BR_V15.03.06.42_multi_TD01 firmware version 15.03.06.42_multi_td0 is affected.
4
Is Tenda AC9 version 3.0 vulnerable to CVE-2023-40942?
No, Tenda AC9 version 3.0 is not vulnerable to CVE-2023-40942.
5
How can I fix CVE-2023-40942?
To fix CVE-2023-40942, users should update their Tenda AC9 router firmware to a version that is not affected.