CVE-2023-45482
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Nov 29, 2023
Updated: Dec 1, 2023
CWE ID 787
Summary
CVE-2023-45482: A stack overflow vulnerability was identified in Tenda AC10's US_AC10V4.0si_V16.03.10.13_cn firmware. The issue lies within the function get_parentControl_list_Info and can be exploited via the urls parameter. Successful exploitation could allow an attacker to execute arbitrary code and potentially gain unauthorized access to the affected device. This vulnerability poses a significant risk to users and requires immediate attention and patching.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Vendors
- Shenzhen Tenda Technology Co. Ltd