CVE-2023-46369
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Oct 25, 2023
Updated: Nov 1, 2023
CWE ID 787
Summary
CVE-2023-46369 is a newly disclosed stack overflow vulnerability affecting Tenda W18E routers running version V16.01.0.8(1576). The issue lies within the formSetNetCheckTools function, specifically the portMirrorMirroredPorts parameter. An attacker can exploit this vulnerability by crafting malicious input, resulting in a stack overflow condition and potential device compromise. Successful exploitation could lead to unauthorized access or denial-of-service attacks. Users are advised to apply patches or updates to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Vendors
- Shenzhen Tenda Technology Co. Ltd