Back

CRITICAL

Tenda AC15 saveParentControlInfo stack-based overflow

Published Mar 24, 2024

Description

A vulnerability was found in Tenda AC15 15.03.20_multi. It has been declared as critical. This vulnerability affects the function saveParentControlInfo of the file /goform/saveParentControlInfo. The manipulation of the argument urls leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-257776. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

Affected products

Remediation

No remediation recorded yet.

Weaknesses (1)

References (4)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner VulDB
Published Mar 24, 2024
Updated Aug 1, 2024
Reserved Mar 23, 2024

CISA Vulnrichment

Updated Mar 25, 2024

NVD

Status Modified
Modified Jun 17, 2026

Red Hat

No data

ENISA EUVD

Assigner VulDB
Published Mar 24, 2024
Updated Aug 1, 2024

GitHub

No data