Buffer Overflow Vulnerability in Tenda RX3 Router via PPTP Server Configuration
Tenda RX3 router firmware version US_RX3V1.0br_V16.03.13.11_multi_TDE01 has a buffer overflow vulnerability in the /goform/SetPptpServerCfg endpoint. The vulnerability exists in the startIp and endIp parameters, which can be manipulated to trigger a buffer overflow condition. By sending a specially crafted packet, an attacker can potentially cause a Denial of Service (DoS) on the affected router, disrupting its normal operation and network connectivity.