Tenda AC18
cpe:2.3:h:tenda:ac18:*:*:*:*:*:*:*, +1 more
- V15.03.05.19
A stack overflow vulnerability has been identified in the Tenda AC18 router, specifically in version V15.03.05.19. The issue arises in the 'AdvSetMacMtuWan' function, where the 'cloneType' parameter can be manipulated by the user. This parameter is passed to 'strcpy', creating a buffer overflow condition.
Exploitation of this vulnerability leads to a stack overflow, causing a segmentation fault on the router.
To reproduce this vulnerability, send a POST request to the '/goform/AdvSetMacMtuWan' endpoint. Include a payload in the 'cloneType' parameter that is large enough to overflow the buffer, such as a string of repeated characters. The request should also include a cookie with the password 'vhlcvb'.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.