CVE-2024-44555: Critical severity tenda ax1806 firmware vulnerability
Published Aug 26, 2024
·Updated
Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.city.vlan parameter in the function setIptvInfo.
Affected Software
2 affected components
All of the following
Tenda Ax1806 Firmware=1.0.0.1
Tenda AX1806
Event History
Aug 26, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-44555?
CVE-2024-44555 has been assigned a high severity due to the potential for a stack overflow, which can lead to remote code execution.
2
How do I fix CVE-2024-44555?
To fix CVE-2024-44555, you should upgrade the Tenda AX1806 firmware to a patched version released by the manufacturer.
3
What types of devices are affected by CVE-2024-44555?
CVE-2024-44555 specifically affects the Tenda AX1806 router running firmware version 1.0.0.1.
4
What could an attacker achieve by exploiting CVE-2024-44555?
An attacker exploiting CVE-2024-44555 could potentially execute arbitrary code on the affected device, compromising its security.
5
What is the nature of the vulnerability in CVE-2024-44555?
CVE-2024-44555 is a stack overflow vulnerability that occurs through the iptv.city.vlan parameter in the setIptvInfo function.