CVE-2024-35571: Critical severity tenda ax1806 firmware vulnerability
Published May 20, 2024
·Updated
Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.stb.mode parameter in the function formSetIptv.
Affected Software
3 affected components
Tenda AX1806
All of the following
Tenda Ax1806 Firmware=1.0.0.1
Tenda AX1806
Event History
Jan 1, 1970
CVE Published
via MITRE·12:00 AM
May 20, 2024
CVE Published
via NVD·06:15 PM
Aug 2, 2024
Data Sourced
via MITRE·03:21 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2024-35571?
CVE-2024-35571 is classified as a high severity vulnerability due to its potential for remote exploitation through stack overflow.
2
How do I fix CVE-2024-35571?
To fix CVE-2024-35571, update the Tenda AX1806 firmware to the latest version provided by the vendor.
3
What systems are affected by CVE-2024-35571?
CVE-2024-35571 specifically affects Tenda AX1806 devices running version 1.0.0.1.
4
What type of vulnerability is CVE-2024-35571?
CVE-2024-35571 is a stack overflow vulnerability that can lead to arbitrary code execution.
5
Is there a workaround for CVE-2024-35571?
Currently, the best mitigation for CVE-2024-35571 is to avoid using the iptv.stb.mode parameter until a patch is applied.