CVE-2023-38931

Tenda AC10 V1.0 V15.03.06.23, AC1206 V15.03.06.23, AC8 v4 V16.03.34.06, AC6 V2.0 V15.03.06.23, AC7 V1.0 V15.03.06.44, F1203 V2.0.1.6, AC5 V1.0 V15.03.06.28, AC10 v4.0 V16.03.10.13 and FH1203 V2.0.1.6 were discovered to contain a stack overflow via the list parameter in the setaccount function.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
mitreCNA
---
---
CVEADP
---
---
CISA-ADPADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 32%
VendorProductVersion
tendaac10_firmware
15.03.06.23
tendaac1206_firmware
15.03.06.23
tendaac8_firmware
16.03.34.06
tendaac6_firmware
15.03.06.23
tendaac7_firmware
15.03.06.44
tendaf1203_firmware
2.0.1.6
tendaac5_firmware
15.03.06.28
tendaac10_firmware
16.03.10.13
tendafh1203_firmware
2.0.1.6
𝑥
= Vulnerable software versions