CVE-2023-39784

Tenda AC8V4 V16.03.34.06 was discovered to contain a stack overflow via the list parameter in the save_virtualser_data function.
References
Link Resource
http://tenda.com Product
https://github.com/Xunflash/IOT/tree/main/Tenda_AC8_V4 Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:tenda:ac8v4_firmware:16.03.34.06:*:*:*:*:*:*:*
cpe:2.3:h:tenda:ac8v4:-:*:*:*:*:*:*:*

History

24 Aug 2023, 16:34

Type Values Removed Values Added
First Time Tenda ac8v4
Tenda
Tenda ac8v4 Firmware
CWE CWE-787
CPE cpe:2.3:o:tenda:ac8v4_firmware:16.03.34.06:*:*:*:*:*:*:*
cpe:2.3:h:tenda:ac8v4:-:*:*:*:*:*:*:*
References (MISC) http://tenda.com - (MISC) http://tenda.com - Product
References (MISC) https://github.com/Xunflash/IOT/tree/main/Tenda_AC8_V4 - (MISC) https://github.com/Xunflash/IOT/tree/main/Tenda_AC8_V4 - Exploit, Third Party Advisory
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5

21 Aug 2023, 01:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-08-21 01:15

Updated : 2023-12-10 15:14


NVD link : CVE-2023-39784

Mitre link : CVE-2023-39784

CVE.ORG link : CVE-2023-39784


JSON object : View

Products Affected

tenda

  • ac8v4
  • ac8v4_firmware
CWE
CWE-787

Out-of-bounds Write