CVE-2023-45482

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Nov 29, 2023
Updated: Dec 1, 2023
CWE ID 787

Summary

CVE-2023-45482: A stack overflow vulnerability was identified in Tenda AC10's US_AC10V4.0si_V16.03.10.13_cn firmware. The issue lies within the function get_parentControl_list_Info and can be exploited via the urls parameter. Successful exploitation could allow an attacker to execute arbitrary code and potentially gain unauthorized access to the affected device. This vulnerability poses a significant risk to users and requires immediate attention and patching.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share