CVE-2023-41552: Critical severity Tenda Ac9 Firmware vulnerability
Published Aug 30, 2023
·Updated
Tenda AC7 V1.0 V15.03.06.44 and Tenda AC9 V3.0 V15.03.06.42multi were discovered to contain a stack overflow via parameter ssid at url /goform/fastsettingwifiset.
Affected Software
4 affected components
Tenda Ac9 Firmware=5.03.06.42_multi
Tenda Ac9=3.0
Tenda AC7 firmware=15.03.06.44
Tenda AC7=1.0
Event History
Aug 30, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2023-41552?
The severity of CVE-2023-41552 is critical with a rating of 9.8.
2
Which Tenda devices are affected by CVE-2023-41552?
Tenda AC7 V1.0 V15.03.06.44 and Tenda AC9 V3.0 V15.03.06.42_multi are affected by CVE-2023-41552.
3
What causes the vulnerability in Tenda AC7 and AC9?
The vulnerability in Tenda AC7 and AC9 is caused by a stack overflow in the parameter ssid at the URL /goform/fast_setting_wifi_set.
4
How can I fix CVE-2023-41552?
There is currently no fix available for CVE-2023-41552. It is recommended to follow any updates or patches provided by the vendor.
5
Is Tenda AC9 version 3.0 vulnerable to CVE-2023-41552?
No, Tenda AC9 version 3.0 is not vulnerable to CVE-2023-41552.