Missing error handling in the HTTP server component of Tenda RX9 Pro Firmware V22.03.02.20 allows authenticated attackers to arbitrarily lock the device.
References
Link Resource
https://blog.rtlcopymemory.com/tenda-rx9-pro/ Exploit Technical Description Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2023-11-07T00:00:00

Updated: 2023-11-07T08:01:59.519117

Reserved: 2023-09-25T00:00:00


Link: CVE-2023-43885

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-11-07T08:15:24.090

Modified: 2023-11-16T16:12:08.003


Link: CVE-2023-43885

JSON object: View

cve-icon Redhat Information

No data.

CWE