CVE-2021-31624Classic Buffer Overflow in AC9 Firmware

Severity
8.8HIGHNVD
EPSS
0.1%
top 69.66%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 29
Latest updateMay 24

Description

Buffer Overflow vulnerability in Tenda AC9 V1.0 through V15.03.05.19(6318), and AC9 V3.0 V15.03.06.42_multi, allows attackers to execute arbitrary code via the urls parameter.

CVSS vector

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 2.8 | Impact: 5.9

Affected Packages1 packages

NVDtendacn/ac9_firmware15.03.06.42_multi+1

🔴Vulnerability Details

2
GHSA
GHSA-qvhc-5474-w39h: Buffer Overflow vulnerability in Tenda AC9 V12022-05-24
CVEList
CVE-2021-31624: Buffer Overflow vulnerability in Tenda AC9 V12021-10-29
CVE-2021-31624 — Classic Buffer Overflow | cvebase