CVE-2023-50987
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Dec 20, 2023
Updated: Dec 22, 2023
CWE ID 787
Summary
CVE-2023-50987: A critical buffer overflow vulnerability (CVE-2023-50987) has been identified in the Tenda i29 v1.0 V1.0.0.5 firmware. The issue lies within the sysTimeInfoSet function, which is susceptible to an attack via the time parameter. Successful exploitation could result in arbitrary code execution, leading to potential unauthorized access, data theft, or device takeover. It is strongly recommended that users update their Tenda i29 devices to the latest firmware version to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Vendors
- Shenzhen Tenda Technology Co. Ltd