• CVE-2022-40855 | Tenda W20E 15.11.0.6 POST Request goform/setPortMappi

    From Security Bot@2:467/888.88 to All on Thu Sep 7 05:10:08 2023


    Title: CVE-2022-40855 | Tenda W20E 15.11.0.6 POST Request goform/setPortMapping/ formSetPortMapping stack-based overflow
    Description: A vulnerability has been found in Tenda W20E 15.11.0.6 and classified as critical. This vulnerability affects the function formSetPortMapping of the file goform/setPortMapping/ of the component POST Request Handler. The manipulation of the argument portMappingServer/portMappingProtocol/portMappingWan/porMappingtInternal/portMappingExternal leads to stack-based buffer overflow.
    Link: https://vuldb.com/?id.209416
    Fri, 23 Sep 2022 19:56:41 +0200


    --- The information is for informational purposes only.
    * Origin: Read us with http://winpoint.org/ (2:467/888.88)