Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2024-05734
HistoryJan 24, 2024 - 12:00 a.m.

Tenda A15 devName Parameter Buffer Overflow Vulnerability

2024-01-2400:00:00
China National Vulnerability Database
www.cnvd.org.cn
9
tenda a15
buffer overflow
devname
parameter
vulnerability
remote attacker
arbitrary code
denial of service
cnvd

8.6 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

45.1%

Tenda A15 is a WiFi extender from Tenda (China). A buffer overflow vulnerability exists in Tenda A15 version 15.13.07.13, which originates from the devName parameter of the /goform/SetOnlineDevName file failing to correctly validate the length of the input data, and can be exploited by a remote attacker to execute arbitrary code on the system or cause a denial of service attack.

CPENameOperatorVersion
tenda a15 15.eq13.07.13

8.6 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

45.1%

Related for CNVD-2024-05734