First published: Wed Aug 30 2023(Updated: )
Tenda AC7 V1.0 V15.03.06.44, Tenda AC9 V3.0 V15.03.06.42_multi, and Tenda AC5 V1.0RTL_V15.03.06.28 were discovered to contain a stack overflow via parameter page at url /goform/NatStaticSetting.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tenda Ac9 Firmware | =15.03.06.42_multi | |
Tenda AC9 | =3.0 | |
Tenda Ac7 Firmware | =15.03.06.44 | |
Tenda AC7 | =1.0 | |
Tenda Ac5 Firmware | =15.03.06.28 | |
Tenda AC5 | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-41559 is critical with a score of 9.8.
Tenda AC7 V1.0 V15.03.06.44, Tenda AC9 V3.0 V15.03.06.42_multi, and Tenda AC5 V1.0RTL_V15.03.06.28 are affected by CVE-2023-41559.
CVE-2023-41559 is a stack overflow vulnerability found in Tenda AC7 V1.0 V15.03.06.44, Tenda AC9 V3.0 V15.03.06.42_multi, and Tenda AC5 V1.0RTL_V15.03.06.28 through the parameter page at URL /goform/NatStaticSetting.
To fix CVE-2023-41559, it is recommended to update the firmware of the affected Tenda devices to a version that is not vulnerable.
You can find more information about CVE-2023-41559 at the following link: [Link to GitHub](https://github.com/peris-navince/founded-0-days/blob/main/fromNatStaticSetting/1.md)