CVE-2023-49046: Critical severity tenda ax1803 firmware vulnerability
Stack Overflow vulnerability in Tenda AX1803 v.1.0.0.1 allows a remote attacker to execute arbitrary code via the devName parameter in the function formAddMacfilterRule.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-49046?
The severity of CVE-2023-49046 is critical, with a severity value of 9.8.
How can a remote attacker exploit CVE-2023-49046?
A remote attacker can exploit CVE-2023-49046 by sending a specially crafted request with a malicious input to the 'devName' parameter in the 'formAddMacfilterRule' function.
How can I check if my Tenda AX1803 device is affected by CVE-2023-49046?
You can check if your Tenda AX1803 device is affected by CVE-2023-49046 by verifying that you have firmware version 1.0.0.1 installed.
Is Tenda AX1803 v.1.0.0.1 the only affected version by CVE-2023-49046?
Yes, Tenda AX1803 v.1.0.0.1 is the only affected version by CVE-2023-49046.
How do I fix the vulnerability CVE-2023-49046?
To fix the vulnerability CVE-2023-49046, it is recommended to upgrade the firmware of your Tenda AX1803 device to a version that includes a patch for the vulnerability.