Tenda AC21
cpe:2.3:h:tenda:ac21:*:*:*:*:*:*:*, +1 more
- V16.03.08.16
A buffer overflow vulnerability has been identified in the Tenda AC21 router running firmware version V16.03.08.16. The issue arises in the HTTP daemon within the 'formSetRebootTimer' function, which handles the 'rebootTime' parameter of the '/goform/SetSysAutoRebbotCfg' endpoint. This stack-based buffer overflow can lead to a denial-of-service condition and allow arbitrary command execution on the device.
Exploitation of this vulnerability causes a segmentation fault, leading to a denial-of-service condition. Additionally, the buffer overflow can be leveraged to execute arbitrary commands on the router.
The vulnerability can be reproduced by sending a POST request to '/goform/SetSysAutoRebbotCfg' with a 'rebootTime' parameter that exceeds the buffer limit. The 'rebootTime' value can be crafted to include excessive data, causing a stack-based buffer overflow. After the request is processed, the device will experience a segmentation fault, indicating successful exploitation.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.