A security vulnerability has been detected in Tenda F453 1.0.0.3. Affected by this vulnerability is the function formWrlExtraSet of the file /goform/WrlExtraSet. The manipulation of the argument GO leads to stack-based buffer overflow.
Remote exploitation of the attack is possible. The exploit has been disclosed publicly and may be used.
Attack Parameters
Impact Assessment
CVSS Vector v4.0
Weakness Type (CWE)
Vulnerable Products 2
| Configuration | From (including) | Up to (excluding) |
|---|---|---|
|
Tenda F453_Firmware
cpe:2.3:o:tenda:f453_firmware:1.0.0.3:*:*:*:*:*:*:*
|
— | — |
|
Tenda F453
cpe:2.3:h:tenda:f453:-:*:*:*:*:*:*:*
|
— | — |