Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-78vp-m592-3wjr

Опубликовано: 15 янв. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

A vulnerability classified as critical was found in Tenda PA6 1.0.1.21. Affected by this vulnerability is the function cgiPortMapAdd of the file /portmap of the component httpd. The manipulation of the argument groupName leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-250705 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

A vulnerability classified as critical was found in Tenda PA6 1.0.1.21. Affected by this vulnerability is the function cgiPortMapAdd of the file /portmap of the component httpd. The manipulation of the argument groupName leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-250705 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

EPSS

Процентиль: 44%
0.00218
Низкий

8.8 High

CVSS3

Дефекты

CWE-121

Связанные уязвимости

CVSS3: 8.8
nvd
около 2 лет назад

A vulnerability classified as critical was found in Tenda PA6 1.0.1.21. Affected by this vulnerability is the function cgiPortMapAdd of the file /portmap of the component httpd. The manipulation of the argument groupName leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-250705 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 9.8
fstec
около 2 лет назад

Уязвимость функции cgiPortMapAdd микропрограммного обеспечения усилителя беспроводного сигнала Tenda PA6, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 44%
0.00218
Низкий

8.8 High

CVSS3

Дефекты

CWE-121