Tenda AC10 V1.0 V15.03.06.23, AC1206 V15.03.06.23, AC8 v4 V16.03.34.06, AC6 V2.0 V15.03.06.23, AC7 V1.0 V15.03.06.44, F1203 V2.0.1.6, AC5 V1.0 V15.03.06.28, AC10 v4.0 V16.03.10.13 and FH1203 V2.0.1.6 were discovered to contain a stack overflow via the list parameter in the setaccount function.
References
Link | Resource |
---|---|
https://github.com/FirmRec/IoT-Vulns/blob/main/tenda/cloudv2_setaccount/README.md | Exploit Third Party Advisory |
https://github.com/FirmRec/IoT-Vulns/blob/main/tenda/cloudv2_setaccount/README.md | Exploit Third Party Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
Configuration 5 (hide)
AND |
|
Configuration 6 (hide)
AND |
|
Configuration 7 (hide)
AND |
|
Configuration 8 (hide)
AND |
|
Configuration 9 (hide)
AND |
|
History
21 Nov 2024, 08:14
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/FirmRec/IoT-Vulns/blob/main/tenda/cloudv2_setaccount/README.md - Exploit, Third Party Advisory |
10 Aug 2023, 17:17
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-787 | |
First Time |
Tenda ac5
Tenda Tenda ac8 Firmware Tenda f1203 Tenda ac1206 Tenda fh1203 Tenda ac10 Firmware Tenda ac1206 Firmware Tenda ac7 Tenda f1203 Firmware Tenda ac10 Tenda ac5 Firmware Tenda fh1203 Firmware Tenda ac8 Tenda ac6 Tenda ac6 Firmware Tenda ac7 Firmware |
|
References | (MISC) https://github.com/FirmRec/IoT-Vulns/blob/main/tenda/cloudv2_setaccount/README.md - Exploit, Third Party Advisory | |
CPE | cpe:2.3:o:tenda:ac10_firmware:15.03.06.23:*:*:*:*:*:*:* cpe:2.3:o:tenda:f1203_firmware:2.0.1.6:*:*:*:*:*:*:* cpe:2.3:h:tenda:fh1203:-:*:*:*:*:*:*:* cpe:2.3:h:tenda:ac10:4.0:*:*:*:*:*:*:* cpe:2.3:h:tenda:ac7:1.0:*:*:*:*:*:*:* cpe:2.3:o:tenda:ac1206_firmware:15.03.06.23:*:*:*:*:*:*:* cpe:2.3:h:tenda:ac10:1.0:*:*:*:*:*:*:* cpe:2.3:o:tenda:ac7_firmware:15.03.06.44:*:*:*:*:*:*:* cpe:2.3:o:tenda:ac5_firmware:15.03.06.28:*:*:*:*:*:*:* cpe:2.3:h:tenda:ac8:4.0:*:*:*:*:*:*:* cpe:2.3:o:tenda:ac8_firmware:16.03.34.06:*:*:*:*:*:*:* cpe:2.3:o:tenda:fh1203_firmware:2.0.1.6:*:*:*:*:*:*:* cpe:2.3:o:tenda:ac10_firmware:16.03.10.13:*:*:*:*:*:*:* cpe:2.3:h:tenda:f1203:-:*:*:*:*:*:*:* cpe:2.3:o:tenda:ac6_firmware:15.03.06.23:*:*:*:*:*:*:* cpe:2.3:h:tenda:ac5:1.0:*:*:*:*:*:*:* cpe:2.3:h:tenda:ac6:2.0:*:*:*:*:*:*:* cpe:2.3:h:tenda:ac1206:-:*:*:*:*:*:*:* |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
07 Aug 2023, 19:30
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-08-07 19:15
Updated : 2024-11-21 08:14
NVD link : CVE-2023-38931
Mitre link : CVE-2023-38931
CVE.ORG link : CVE-2023-38931
JSON object : View
Products Affected
tenda
- f1203
- ac8_firmware
- ac6_firmware
- ac5_firmware
- f1203_firmware
- ac5
- fh1203
- fh1203_firmware
- ac1206_firmware
- ac10_firmware
- ac1206
- ac6
- ac7
- ac8
- ac10
- ac7_firmware
CWE
CWE-787
Out-of-bounds Write