In Tenda ax1803 v1.0.0.1, the http requests handled by the fromAdvSetMacMtuWan functions, wanSpeed, cloneType, mac, can cause a stack overflow and enable remote code execution (RCE).
The product writes data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://www.cnblogs.com/L0g4n-blog/p/16695155.html | third party advisory exploit |
https://www.cnblogs.com/L0g4n-blog/p/16704071.html | third party advisory exploit |