First published: Mon Nov 27 2023(Updated: )
Stack Overflow vulnerability in Tenda AX1803 v.1.0.0.1 allows a remote attacker to execute arbitrary code via the devName parameter in the function formAddMacfilterRule.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Tenda Ax1803 Firmware | =1.0.0.1 | |
Tenda AX1803 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-49046 is critical, with a severity value of 9.8.
A remote attacker can exploit CVE-2023-49046 by sending a specially crafted request with a malicious input to the 'devName' parameter in the 'formAddMacfilterRule' function.
You can check if your Tenda AX1803 device is affected by CVE-2023-49046 by verifying that you have firmware version 1.0.0.1 installed.
Yes, Tenda AX1803 v.1.0.0.1 is the only affected version by CVE-2023-49046.
To fix the vulnerability CVE-2023-49046, it is recommended to upgrade the firmware of your Tenda AX1803 device to a version that includes a patch for the vulnerability.