Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Tenda F453 Parameters SafeClientFilter fromSafeClientFilter memory corruption
Vulnerability Description
A vulnerability was found in Tenda F453 1.0.0.3. This vulnerability affects the function fromSafeClientFilter of the file /goform/SafeClientFilter of the component Parameters Handler. Performing a manipulation of the argument menufacturer/Go results in stack-based buffer overflow. The attack is possible to be carried out remotely. The exploit has been made public and could be used.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
栈缓冲区溢出
Vulnerability Title
Tenda F453 安全漏洞
Vulnerability Description
Tenda F453是中国腾达(Tenda)公司的一款无线路由器。 Tenda F453 1.0.0.3版本存在安全漏洞,该漏洞源于对参数处理组件中文件/goform/SafeClientFilter的函数fromSafeClientFilter的参数menufacturer/Go的错误操作,可能导致基于栈的缓冲区溢出。
CVSS Information
N/A
Vulnerability Type
N/A