First published: Mon May 20 2024(Updated: )
Tenda AX1806 v1.0.0.1 contains a stack overflow via the adv.iptv.stbpvid parameter in the function formSetIptv.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tenda AX1806 Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-35580 is classified as a high-severity vulnerability due to the potential for remote code execution resulting from a stack overflow.
To fix CVE-2024-35580, update the Tenda AX1806 firmware to the latest version provided by the vendor.
CVE-2024-35580 specifically affects the Tenda AX1806 router model.
The attack vector for CVE-2024-35580 involves sending crafted requests to the adv.iptv.stbpvid parameter in the formSetIptv function.
Yes, CVE-2024-35580 can be exploited remotely if an attacker has access to the vulnerable device's network.