CVE-2023-46369

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Oct 25, 2023
Updated: Nov 1, 2023
CWE ID 787

Summary

CVE-2023-46369 is a newly disclosed stack overflow vulnerability affecting Tenda W18E routers running version V16.01.0.8(1576). The issue lies within the formSetNetCheckTools function, specifically the portMirrorMirroredPorts parameter. An attacker can exploit this vulnerability by crafting malicious input, resulting in a stack overflow condition and potential device compromise. Successful exploitation could lead to unauthorized access or denial-of-service attacks. Users are advised to apply patches or updates to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share