Tenda AC6
cpe:2.3:h:tenda:ac6:*:*:*:*:*:*:*, +1 more
- 15.03.05.16_multi
A buffer overflow vulnerability has been identified in the Tenda AC6 router, specifically in the firmware version 15.03.05.16_multi. The issue arises in the sub_452A4 function, where the 'getRebootStatus' callback parameter can be manipulated via HTTP requests, leading to potential memory corruption.
Exploitation of this vulnerability causes a buffer overflow, which can commonly lead to arbitrary code execution or causing a device to crash.
To reproduce this vulnerability, send an HTTP request to the Tenda AC6 router's 'getRebootStatus' endpoint. Include a crafted 'callback' parameter that exceeds the expected length, triggering the buffer overflow in the sub_452A4 function.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.