Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Tenda A18 Httpd Service WifiExtraSet strcpy stack-based overflow
Vulnerability Description
A vulnerability has been found in Tenda A18 15.13.07.13. This affects the function strcpy of the file /goform/WifiExtraSet of the component Httpd Service. The manipulation of the argument wpapsk_crypto5g leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
栈缓冲区溢出
Vulnerability Title
Tenda A18 安全漏洞
Vulnerability Description
Tenda A18是中国腾达(Tenda)公司的一款 AC1200 双频 Wi-Fi 中继器。 Tenda A18 15.13.07.13版本存在安全漏洞,该漏洞源于/goform/WifiExtraSet文件中strcpy函数对参数wpapsk_crypto5g的操作存在栈缓冲区溢出。
CVSS Information
N/A
Vulnerability Type
N/A