CVE-2023-48194
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD
Description
Vulnerability in Tenda AC8v4 .V16.03.34.09 due to sscanf and the last digit of s8 being overwritten with \x0. After executing set_client_qos, control over the gp register can be obtained.
Affected (1)
Products: Tenda: Ac8 Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 16.03.34.09 |
| Running on/with | Platform Versions |
|---|---|
Tenda Ac8v4 | All versions |
References (5)
Source: cve@mitre.org
Timeline
No history available yet.