CVE-2023-51967

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Jan 10, 2024
Updated: Jan 13, 2024
CWE ID 787

Summary

CVE-2023-51967 refers to a stack overflow vulnerability discovered in the Tenda AX1803 v1.0.0.1 firmware. This issue arises due to an incorrect handling of the iptv.stb.port parameter in the getIptvInfo function. An attacker can exploit this vulnerability by sending specially crafted data to the affected device, causing it to enter a state of denial-of-service or potentially executing arbitrary code. This can pose a serious risk to network security, as the vulnerability can be exploited remotely. Users are advised to update their firmware to a patched version as soon as possible to mitigate this threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share