Vulnerability in Tenda AC8v4 .V16.03.34.09 due to sscanf and the last digit of s8 being overwritten with \x0. After executing set_client_qos, control over the gp register can be obtained.
References
Link | Resource |
---|---|
http://tenda.com | Not Applicable |
https://github.com/zt20xx/CVE-2023-48194 | Exploit |
Configurations
Configuration 1 (hide)
AND |
|
History
No history.
Information
Published : 2024-07-09 18:15
Updated : 2024-07-12 17:13
NVD link : CVE-2023-48194
Mitre link : CVE-2023-48194
CVE.ORG link : CVE-2023-48194
JSON object : View
Products Affected
tenda
- ac8v4_firmware
- ac8v4
CWE