CVE-2021-38772

Tenda AC10-1200 v15.03.06.23_EN was discovered to contain a buffer overflow via the list parameter in the fromSetIpMacBind function.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:tendacn:ac10_firmware:15.03.06.23:*:*:*:*:*:*:*
cpe:2.3:h:tendacn:ac10:-:*:*:*:*:*:*:*

History

29 Mar 2022, 19:27

Type Values Removed Values Added
References (MISC) https://noob3xploiter.medium.com/hacking-the-tenda-ac10-1200-router-part-3-yet-another-buffer-overflow-4eb322f64823 - (MISC) https://noob3xploiter.medium.com/hacking-the-tenda-ac10-1200-router-part-3-yet-another-buffer-overflow-4eb322f64823 - Exploit, Vendor Advisory
CWE CWE-120
CPE cpe:2.3:h:tendacn:ac10:-:*:*:*:*:*:*:*
cpe:2.3:o:tendacn:ac10_firmware:15.03.06.23:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : 7.8
v3 : 7.5

23 Mar 2022, 19:15

Type Values Removed Values Added
New CVE

Information

Published : 2022-03-23 19:15

Updated : 2024-02-04 22:29


NVD link : CVE-2021-38772

Mitre link : CVE-2021-38772

CVE.ORG link : CVE-2021-38772


JSON object : View

Products Affected

tendacn

  • ac10
  • ac10_firmware
CWE
CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')