Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2021-46321: CVE-Request/Tenda/15 at main · Ainevsia/CVE-Request

Tenda AC Series Router AC11_V02.03.01.104_CN was discovered to contain a stack buffer overflow in the wifiBasicCfg module. This vulnerability allows attackers to cause a Denial of Service (DoS) via crafted overflow data.

CVE
#vulnerability#dos#git

Tenda Router AC Series Vulnerability

This vulnerability lies in the /goform/setWifi page which influences the lastest version of Tenda Router AC11. (AC11_V02.03.01.104_CN)

Vulnerability description

3

There is a stack buffer overflow vulnerability in the wifiBasicCfg module.

The program reads in a user input named wifiSSID in user’s POST request and directly uses the input immediately, without checking its length, which can lead to buffer overflows bugs in the following sprintf or strcpy functions.

1

So by POSTing the page /goform/setWifi with proper WifiSSID, the attacker can easily perform a Deny of Service Attack or Remote Code Execution with carefully crafted overflow data.

POC

poc

Timeline

  • 2022.01.11 report to CVE & CNVD

Acknowledgment

Credit to @cpegg, @leonW7 and @peanuts from Shanghai Jiao Tong University and TIANGONG Team of Legendsec at Qi’anxin Group.

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda
CVE-2023-6905
CVE-2023-6903
CVE-2023-6904
CVE-2023-3907