ZeroHour

CVE-2023-47455

PoC
CVSS 3.1
9.1 critical
EPSS
<1%p55
Published
()
Modified
Description

Tenda AX1806 V1.0.0.1 contains a heap overflow vulnerability in setSchedWifi function, in which the src and v12 are directly obtained from http request parameter schedStartTime and schedEndTime without checking their size.

Vendors
tenda
Products
ax1806 firmware
Weakness
CWE-787
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H

In the news

No ingested article mentions this CVE yet.