CVE-2024-28537: Critical severity tenda ac18 firmware vulnerability
Published Mar 18, 2024
·Updated
Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the page parameter of fromNatStaticSetting function.
Affected Software
3 affected components
Tenda Ac18
All of the following
Tenda Ac18 Firmware=15.03.05.05
Tenda Ac18
Event History
Mar 18, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-28537?
CVE-2024-28537 is classified as a high severity vulnerability due to its potential to cause a stack overflow.
2
How do I fix CVE-2024-28537?
To fix CVE-2024-28537, it is recommended to update the firmware of Tenda AC18 to the latest version.
3
What does CVE-2024-28537 affect?
CVE-2024-28537 affects the Tenda AC18 router specifically in the fromNatStaticSetting function.
4
What is a stack overflow vulnerability like CVE-2024-28537?
A stack overflow vulnerability occurs when a program exceeds the memory limits on the call stack, potentially leading to arbitrary code execution.
5
Can CVE-2024-28537 be exploited remotely?
Yes, CVE-2024-28537 can be exploited remotely if an attacker sends a specially crafted request to the affected function.