CVE-2024-35579: High severity tenda ax1806 firmware vulnerability
Published May 20, 2024
·Updated
Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.city.vlan parameter in the function formSetIptv.
Affected Software
3 affected components
Tenda AX1806
All of the following
Tenda Ax1806 Firmware=1.0.0.1
Tenda AX1806
Event History
Jan 1, 1970
CVE Published
via MITRE·12:00 AM
May 20, 2024
CVE Published
via NVD·06:15 PM
Aug 10, 2024
Data Sourced
via MITRE·04:23 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2024-35579?
CVE-2024-35579 is considered high severity due to its potential for remote code execution via stack overflow.
2
How do I fix CVE-2024-35579?
To fix CVE-2024-35579, update your Tenda AX1806 firmware to the latest version recommended by the vendor.
3
What is the impact of CVE-2024-35579 on Tenda AX1806 users?
Users of Tenda AX1806 may experience system crashes or malicious code execution if CVE-2024-35579 is exploited.
4
Is there a workaround for CVE-2024-35579?
Currently, there are no known workarounds for CVE-2024-35579 without applying the firmware update.
5
What components are affected by CVE-2024-35579?
CVE-2024-35579 specifically affects the iptv.city.vlan parameter in the formSetIptv function of the Tenda AX1806.