CVE-2023-49042: Critical severity tenda ax1803 firmware vulnerability
Heap Overflow vulnerability in Tenda AX1803 v.1.0.0.1 allows a remote attacker to execute arbitrary code via the schedStartTime parameter or the schedEndTime parameter in the function setSchedWifi.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-49042?
The severity of CVE-2023-49042 is critical with a CVSS score of 9.8.
How does the Heap Overflow vulnerability in Tenda AX1803 v.1.0.0.1 impact a system?
The Heap Overflow vulnerability in Tenda AX1803 v.1.0.0.1 allows a remote attacker to execute arbitrary code, which can lead to a full compromise of the affected system.
How can the Heap Overflow vulnerability in Tenda AX1803 v.1.0.0.1 be exploited?
The vulnerability can be exploited by sending malicious input via the schedStartTime or schedEndTime parameters in the setSchedWifi function.
Is Tenda AX1803 version 1.0.0.1 affected by the Heap Overflow vulnerability?
Yes, Tenda AX1803 version 1.0.0.1 is affected by the Heap Overflow vulnerability.
How can I fix the Heap Overflow vulnerability in Tenda AX1803 v.1.0.0.1?
Update Tenda AX1803 firmware to a version that does not contain the Heap Overflow vulnerability, if available. Contact the vendor for further assistance.