cbcvebase.
CVE-2023-38937
published 2023-08-07

CVE-2023-38937: Tenda AC10 V1.0 V15.03.06.23, AC1206 V15.03.06.23, AC8 v4 V16.03.34.06, AC6 V2.0 V15.03.06.23, AC7 V1.0 V15.03.06.44, AC5 V1.0 V15.03.06.28, AC9 V3.0…

critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
Tenda AC10 V1.0 V15.03.06.23, AC1206 V15.03.06.23, AC8 v4 V16.03.34.06, AC6 V2.0 V15.03.06.23, AC7 V1.0 V15.03.06.44, AC5 V1.0 V15.03.06.28, AC9 V3.0 V15.03.06.42_multi and AC10 v4.0 V16.03.10.13 were discovered to contain a stack overflow via the list parameter in the formSetVirtualSer function.

Affected

8 ranges
VendorProductVersion rangeFixed in
tendaac10_firmware
tendaac10_firmware
tendaac1206_firmware
tendaac5_firmware
tendaac6_firmware
tendaac7_firmware
tendaac8_firmware
tendaac9_firmware