A vulnerability was found in Tenda AC5 15.03.06.47. Impacted is the function formWifiWpsOOB of the file /goform/WifiWpsOOB of the component POST Request Handler. Performing a manipulation of the argument index results in stack-based buffer overflow.
Remote exploitation of the attack is possible. The exploit has been made public and could be used.
Attack Parameters
Impact Assessment
CVSS Vector v4.0
Weakness Type (CWE)
Vulnerable Products 2
| Configuration | From (including) | Up to (excluding) |
|---|---|---|
|
Tenda Ac5_Firmware
cpe:2.3:o:tenda:ac5_firmware:15.03.06.47:*:*:*:*:*:*:*
|
— | — |
|
Tenda Ac5
cpe:2.3:h:tenda:ac5:1.0:*:*:*:*:*:*:*
|
— | — |