CVE-2023-49434: Critical severity tenda ax9 firmware vulnerability
Published Dec 7, 2023
·Updated
Tenda AX9 V22.03.01.46 has been found to contain a stack overflow vulnerability in the 'list' parameter at /goform/SetNetControlList.
Affected Software
2 affected components
All of the following
Tenda Ax9 Firmware=22.03.01.46
Tenda AX9
Event History
Dec 7, 2023
CVE Published
12:00 AM
Data Sourced
12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2023-49434?
The CVE-2023-49434 vulnerability is classified as a high-severity stack overflow issue.
2
How do I fix CVE-2023-49434?
To fix CVE-2023-49434, update the Tenda AX9 firmware to a version that addresses the vulnerability.
3
What component is affected by CVE-2023-49434?
CVE-2023-49434 affects the 'list' parameter in the /goform/SetNetControlList function of the Tenda AX9 router.
4
Is CVE-2023-49434 remotely exploitable?
Yes, CVE-2023-49434 can potentially be exploited remotely without authentication.
5
What versions of software are impacted by CVE-2023-49434?
CVE-2023-49434 impacts Tenda AX9 firmware version 22.03.01.46.