CVE-2023-44021
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Sep 27, 2023
CWE ID 119
Summary
CVE-2023-44021 refers to a stack overflow vulnerability discovered in the Tenda AC10U v1.0 US_AC10UV1.0RTL_V15.03.06.49_multi_TDE01 firmware. The issue lies within the formSetClientState function, which can be exploited to cause the stack to overflow, potentially leading to arbitrary code execution or a denial-of-service condition. This vulnerability poses a significant risk to affected devices and requires an immediate firmware update from the vendor to mitigate it.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share