Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qghg-p9wq-272p

Опубликовано: 13 авг. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

A stack overflow vulnerability exists in /goform/setAutoPing in Tenda W6 V1.0.0.9(4122), which allows an attacker to construct ping1 parameters and ping2 parameters for a stack overflow attack. An attacker can use this vulnerability to execute arbitrary code execution.

A stack overflow vulnerability exists in /goform/setAutoPing in Tenda W6 V1.0.0.9(4122), which allows an attacker to construct ping1 parameters and ping2 parameters for a stack overflow attack. An attacker can use this vulnerability to execute arbitrary code execution.

EPSS

Процентиль: 81%
0.01519
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 9.8
nvd
больше 3 лет назад

A stack overflow vulnerability exists in /goform/setAutoPing in Tenda W6 V1.0.0.9(4122), which allows an attacker to construct ping1 parameters and ping2 parameters for a stack overflow attack. An attacker can use this vulnerability to execute arbitrary code execution.

EPSS

Процентиль: 81%
0.01519
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-787