CVE-2024-44549: Critical severity tenda ax1806 firmware vulnerability
Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.stb.port parameter in the function formGetIptv.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-44549?
The severity of CVE-2024-44549 has not been explicitly rated, but it involves a stack overflow which can lead to system instability or unauthorized access.
How do I fix CVE-2024-44549?
To remediate CVE-2024-44549, update the Tenda AX1806 firmware to a patched version or apply security measures to limit access to the vulnerable parameter.
What software versions are affected by CVE-2024-44549?
CVE-2024-44549 affects Tenda AX1806 firmware version 1.0.0.1.
What are the risks associated with CVE-2024-44549?
Exploiting CVE-2024-44549 could lead to remote code execution, denial of service, or unauthorized control over the affected device.
Is there a workaround for CVE-2024-44549 until a patch is available?
As a workaround for CVE-2024-44549, consider disabling any features that utilize the iptv.stb.port parameter until an official patch is released.