Tenda W3 Buffer Overflow Vulnerability in formWifiMacFilterSet POST Parameter Handler
Vulnerability
A stack-based buffer overflow vulnerability has been identified in the Tenda W3 router, specifically in version 1.0.0.3(2204). The issue arises in the formWifiMacFilterSet function within the WifiMacFilterSet POST Parameter Handler. The vulnerability is located in the /goform/WifiMacFilterSet file, where the index/GO POST parameters are manipulated, leading to a buffer overflow. This vulnerability can be exploited remotely, and a public exploit is available.
Impact
Exploitation of this vulnerability causes a stack-based buffer overflow, which can lead to memory corruption, application crashes, and potentially allow for arbitrary code execution.
Reproduction
To reproduce this vulnerability, send a POST request to the /goform/WifiMacFilterSet endpoint. Include a long string in the index or GO parameter. The excessive length will overflow the buffer, overwrite stack memory, and can cause a crash or allow for code execution.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
