CVE-2023-48109
CVSS 3.1 Score 7.5 of 10 (high)
Details
Summary
CVE-2023-48109 is a recently disclosed vulnerability affecting Tenda AX1803 v1.0.0.1 routers. The issue involves a heap overflow vulnerability in the saveParentControlInfo function, which can be exploited using a specially crafted deviceId parameter. Attackers can take advantage of this flaw to cause a Denial of Service (DoS) attack, disrupting the normal functioning of the affected devices. This vulnerability poses a significant risk to organizations or individuals using the affected router model and should be addressed promptly by applying the latest firmware updates.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- Shenzhen Tenda Technology Co. Ltd