Tenda AC5
cpe:2.3:h:tenda:ac5:*:*:*:*:*:*:*, +1 more
- 15.03.06.47
A stack-based buffer overflow vulnerability has been identified in the Tenda AC5 router, specifically in version 15.03.06.47. The issue arises in the 'formWifiWpsOOB' function within the '/goform/WifiWpsOOB' file, part of the POST Request Handler component. The vulnerability can be exploited remotely by manipulating the 'index' parameter in a POST request, leading to the potential overwriting of the function's return address.
Exploitation of this vulnerability allows for a stack-based buffer overflow, where the attacker can overwrite the return address of the function, potentially leading to arbitrary code execution.
To reproduce this vulnerability, send a POST request to the '/goform/WifiWpsOOB' endpoint with a crafted 'index' parameter. The value of the 'index' parameter should be manipulated to overflow the stack buffer, overwriting the return address of the 'formWifiWpsOOB' function.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.