CVE-2023-51967
CVSS 3.1 Score 9.8 of 10 (high)
Details
Summary
CVE-2023-51967 refers to a stack overflow vulnerability discovered in the Tenda AX1803 v1.0.0.1 firmware. This issue arises due to an incorrect handling of the iptv.stb.port parameter in the getIptvInfo function. An attacker can exploit this vulnerability by sending specially crafted data to the affected device, causing it to enter a state of denial-of-service or potentially executing arbitrary code. This can pose a serious risk to network security, as the vulnerability can be exploited remotely. Users are advised to update their firmware to a patched version as soon as possible to mitigate this threat.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- Shenzhen Tenda Technology Co. Ltd