8.8
CVSSv3

CVE-2024-10661

CVSSv4: 8.7 | CVSSv3: 8.8 | CVSSv2: 9 | VMScore: 970 | EPSS: 0.00402 | KEV: Not Included
Published: 01/11/2024 Updated: 05/11/2024

Vulnerability Summary

Critical Stack-Based Buffer Overflow in Tenda AC15's SetDlnaCfg Function

A serious vulnerability is in Tenda AC15 version 15.03.05.19. It's a critical issue. It affects a part called SetDlnaCfg in the file /goform/SetDlnaCfg. The problem happens when the scanList argument is handled. This causes a stack-based buffer overflow. An attacker can trigger this from a remote location. Details of the exploit are public, so it might be used.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

tenda ac15 firmware 15.03.05.19