CVE-2024-32320

Severity
5.9MEDIUM
EPSS
0.1%
top 65.63%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedApr 17

Description

Tenda AC500 V2.0.1.9(1307) firmware has a stack overflow vulnerability via the timeZone parameter in the formSetTimeZone function.

CVSS vector

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 2.2 | Impact: 3.6

Affected Packages1 packages

NVDtenda/ac500_firmware2.0.1.9\(1307\)

🔴Vulnerability Details

2
GHSA
GHSA-4pg7-hw8j-rmpq: Tenda AC500 V22024-04-17
CVEList
CVE-2024-32320: Tenda AC500 V22024-04-17
CVE-2024-32320 (MEDIUM CVSS 5.9) | Tenda AC500 V2.0.1.9(1307) firmware | cvebase.io