CVE-2024-44552: Critical severity tenda ax1806 firmware vulnerability
Published Aug 26, 2024
·Updated
Tenda AX1806 v1.0.0.1 contains a stack overflow via the adv.iptv.stballvlans parameter in the function formGetIptv.
Affected Software
2 affected components
All of the following
Tenda Ax1806 Firmware=1.0.0.1
Tenda AX1806
Event History
Aug 26, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·04:15 PM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2024-44552?
CVE-2024-44552 is classified as a high-severity vulnerability due to the risk of a stack overflow exploit.
2
How do I fix CVE-2024-44552?
To address CVE-2024-44552, it is recommended to update the Tenda AX1806 firmware to a patched version that resolves the stack overflow issue.
3
Where does CVE-2024-44552 occur in the Tenda AX1806?
CVE-2024-44552 occurs in the function formGetIptv, specifically through the adv.iptv.stballvlans parameter.
4
What impact does CVE-2024-44552 have on my device?
CVE-2024-44552 can potentially lead to a denial of service or remote code execution due to the stack overflow.
5
Which versions of Tenda AX1806 are affected by CVE-2024-44552?
CVE-2024-44552 affects Tenda AX1806 firmware version 1.0.0.1.