CVE-2024-25756: Buffer Overflow
A Stack Based Buffer Overflow vulnerability in Tenda AC9 v.3.0 with firmware version v.15.03.06.42multi allows a remote attacker to execute arbitrary code via the formWifiBasicSet function.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Tenda AC9to a version that resolves this vulnerability.Fixed in v.15.03.06.42_multi
Event History
Frequently Asked Questions
What is the severity of CVE-2024-25756?
CVE-2024-25756 is classified as a high-severity vulnerability due to its potential for remote code execution.
How do I fix CVE-2024-25756?
To fix CVE-2024-25756, update the Tenda AC9 firmware to the latest version provided by the manufacturer.
What software is affected by CVE-2024-25756?
CVE-2024-25756 affects Tenda AC9 devices running firmware version v.15.03.06.42_multi.
Can CVE-2024-25756 be exploited remotely?
Yes, CVE-2024-25756 can be exploited remotely by an attacker without physical access to the device.
What type of vulnerability is CVE-2024-25756?
CVE-2024-25756 is a stack-based buffer overflow vulnerability, which can allow arbitrary code execution.