CVE-2023-51956
CVSS 3.1 Score 9.8 of 10 (high)
Details
Summary
CVE-2023-51956 refers to a stack overflow vulnerability discovered in Tenda AX1803 v1.0.0.1. This issue arises due to an incorrect handling of the iptv.city.vlan parameter in the formSetIptv function. An attacker could exploit this vulnerability by sending maliciously crafted data to the affected device, potentially leading to a denial-of-service condition or, in more complex attacks, gaining unauthorized access to sensitive information or executing arbitrary code. This could pose a significant risk to network security and require immediate patching of the affected firmware.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- Shenzhen Tenda Technology Co. Ltd