CVE-2023-51955
CVSS 3.1 Score 9.8 of 10 (high)
Details
Summary
CVE-2023-51955 is a newly identified stack overflow vulnerability affecting Tenda AX1803 routers running firmware version 1.0.0.1. The issue lies within the function formSetIptv, specifically the handling of the adv.iptv.stballvlans parameter. An attacker can exploit this vulnerability by sending maliciously crafted data to the router, causing the stack to overflow and potentially leading to arbitrary code execution or a denial-of-service condition. This vulnerability poses a significant risk to organizations and individuals using Tenda AX1803 routers and requires prompt patching to mitigate the threat.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- Shenzhen Tenda Technology Co. Ltd