CVE-2024-32303: High severity tenda ac15 vulnerability
Tenda AC15 v15.03.20multi, v15.03.05.19, and v15.03.05.18 firmware has a stack overflow vulnerability located via the PPW parameter in the fromWizardHandle function.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-32303?
CVE-2024-32303 has a high severity rating due to its potential to cause a stack overflow, which can lead to unauthorized access and execution of arbitrary code.
How do I fix CVE-2024-32303?
To mitigate CVE-2024-32303, users should upgrade their Tenda AC15 firmware to the latest version provided by the vendor.
Which versions of Tenda AC15 are affected by CVE-2024-32303?
CVE-2024-32303 affects Tenda AC15 firmware versions v15.03.20_multi, v15.03.05.19, and v15.03.05.18.
What is the exploit vector for CVE-2024-32303?
The exploit vector for CVE-2024-32303 is via the PPW parameter in the fromWizardHandle function, which can be manipulated to trigger the stack overflow.
Is CVE-2024-32303 publicly disclosed?
Yes, CVE-2024-32303 has been publicly disclosed and is included in security advisories.