Buffer Overflow Vulnerability in Tenda RX3 Router via Parental Control Parameters
Tenda RX3 router firmware version US_RX3V1.0br_V16.03.13.11_multi_TDE01 has a buffer overflow vulnerability in the parent control settings page. The vulnerability exists in the /goform/saveParentControlInfo endpoint, specifically through the schedStartTime and schedEndTime parameters. By sending a carefully crafted packet, an attacker can trigger a buffer overflow condition that leads to a Denial of Service (DoS) attack, potentially disrupting the router's normal operation.