CVE-2022-43101 β€” Out-of-bounds Write in Ac23 Firmware

Severity
9.8CRITICALNVD
EPSS
0.4%
top 37.00%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedNov 3

Description

Tenda AC23 V16.03.07.45_cn was discovered to contain a stack overflow via the devName parameter in the formSetDeviceName function.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages1 packages

β–ΆNVDtenda/ac23_firmware16.03.07.45_cn

πŸ”΄Vulnerability Details

2
GHSA
GHSA-jpmj-jj69-x4jp: Tenda AC23 V16β†—2022-11-03
β–Ά
CVEList
CVE-2022-43101: Tenda AC23 V16β†—2022-11-03
β–Ά
CVE-2022-43101 β€” Out-of-bounds Write in Tenda | cvebase