CVE-2024-7583: Tenda i22 apPortalOneKeyAuth formApPortalOneKeyAuth buffer overflow
A vulnerability, which was classified as critical, has been found in Tenda i22 1.0.0.3(4687). This issue affects the function formApPortalOneKeyAuth of the file /goform/apPortalOneKeyAuth. The manipulation of the argument data leads to buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-7583?
CVE-2024-7583 has been classified as a critical vulnerability.
What software versions are affected by CVE-2024-7583?
CVE-2024-7583 affects Tenda i22 firmware version 1.0.0.3(4687).
How do I fix CVE-2024-7583?
To mitigate CVE-2024-7583, upgrade the Tenda i22 firmware to a version that addresses the buffer overflow vulnerability.
What type of vulnerability is CVE-2024-7583?
CVE-2024-7583 is a buffer overflow vulnerability affecting the function formApPortalOneKeyAuth.
What can an attacker achieve by exploiting CVE-2024-7583?
Exploiting CVE-2024-7583 may allow an attacker to execute arbitrary code on the affected device.