CVE-2023-51955

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Jan 10, 2024
Updated: Jan 13, 2024
CWE ID 787

Summary

CVE-2023-51955 is a newly identified stack overflow vulnerability affecting Tenda AX1803 routers running firmware version 1.0.0.1. The issue lies within the function formSetIptv, specifically the handling of the adv.iptv.stballvlans parameter. An attacker can exploit this vulnerability by sending maliciously crafted data to the router, causing the stack to overflow and potentially leading to arbitrary code execution or a denial-of-service condition. This vulnerability poses a significant risk to organizations and individuals using Tenda AX1803 routers and requires prompt patching to mitigate the threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share