Tenda AX1803 v1.0.0.1_2890 is vulnerable to Buffer Overflow. The vulnerability lies in rootfs_ In / goform / setsystimecfg of / bin / tdhttpd in ubif file system, attackers can access http://ip/goform/SetSysTimeCfg, and by setting the ntpserve parameter, the stack buffer overflow can be caused to achieve the effect of router denial of service.
References
Link Resource
https://github.com/Le1a/CVE-2022-30040 Exploit Third Party Advisory
https://github.com/Le1a/Tenda-AX1803-Denial-of-service Exploit Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2022-05-11T17:28:30

Updated: 2022-05-17T17:07:54

Reserved: 2022-05-02T00:00:00


Link: CVE-2022-30040

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2022-05-11T18:15:29.173

Modified: 2022-05-20T14:41:07.360


Link: CVE-2022-30040

JSON object: View

cve-icon Redhat Information

No data.

CWE