ID

VAR-202107-1807


TITLE

Many Tenda AC routers have stack buffer overflow vulnerabilities

Trust: 0.6

sources: CNVD: CNVD-2021-41109

DESCRIPTION

Shenzhen Jixiang Tengda Technology Co., Ltd. is a high-tech enterprise integrating independent research and development, production and sales of network equipment. Many Tenda AC routers have stack buffer overflow vulnerabilities, which can be exploited by attackers to cause denial of service attacks.

Trust: 0.6

sources: CNVD: CNVD-2021-41109

IOT TAXONOMY

category:['Network device']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2021-41109

AFFECTED PRODUCTS

vendor:jixiang tengdamodel:ac5 <=v02.03.01.21 cnscope: - version: -

Trust: 0.6

vendor:jixiang tengdamodel:ac6 <=v02.03.01.26 cnscope: - version: -

Trust: 0.6

vendor:jixiang tengdamodel:ac7 <=v02.03.01.102 cnscope: - version: -

Trust: 0.6

vendor:jixiang tengdamodel:ac8 <=v02.03.01.105 cnscope: - version: -

Trust: 0.6

vendor:jixiang tengdamodel:ac10 <=v02.03.01.110 cnscope: - version: -

Trust: 0.6

vendor:jixiang tengdamodel:ac11 <=v02.03.01.104 cnscope: - version: -

Trust: 0.6

sources: CNVD: CNVD-2021-41109

CVSS

SEVERITY

CVSSV2

CVSSV3

CNVD: CNVD-2021-41109
value: MEDIUM

Trust: 0.6

CNVD: CNVD-2021-41109
severity: MEDIUM
baseScore: 6.1
vectorString: AV:A/AC:L/AU:N/C:N/I:N/A:C
accessVector: ADJACENT_NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: NONE
integrityImpact: NONE
availabilityImpact: COMPLETE
exploitabilityScore: 6.5
impactScore: 6.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

sources: CNVD: CNVD-2021-41109

EXTERNAL IDS

db:CNVDid:CNVD-2021-41109

Trust: 0.6

sources: CNVD: CNVD-2021-41109

SOURCES

db:CNVDid:CNVD-2021-41109

LAST UPDATE DATE

2022-05-04T09:15:23.326000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2021-41109date:2021-06-12T00:00:00

SOURCES RELEASE DATE

db:CNVDid:CNVD-2021-41109date:2021-07-16T00:00:00