Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2024-06249
HistoryDec 22, 2023 - 12:00 a.m.

Tenda i29 sysScheduleRebootSet method buffer overflow vulnerability

2023-12-2200:00:00
China National Vulnerability Database
www.cnvd.org.cn
6
tenda i29
buffer overflow
sysschedulerebootset
remote attacker
arbitrary code
denial of service
vulnerability
chinese company
input data validation

AI Score

8.7

Confidence

High

EPSS

0.001

Percentile

47.1%

The Tenda i29 is a wireless router from the Chinese company Tenda. The Tenda i29 suffers from a buffer overflow vulnerability that originates from the rebootTime parameter of the sysScheduleRebootSet method failing to correctly validate the length of the input data, which can be exploited by a remote attacker to execute arbitrary code on the system or lead to a denial of service attack.

AI Score

8.7

Confidence

High

EPSS

0.001

Percentile

47.1%

Related for CNVD-2024-06249