CVE-2021-31755

CVE Published 2021-05-07
Related CWE(s) CWE-787: Out-of-bounds Write
Related Vendor(s) tenda
Related Product(s) ac11_firmware
Exploitation Reported (CISA KEV) 2021-11-03
CVSS 3 Base Score 9.8 (CRITICAL)
CVSS 3 Attack Complexity LOW
CVSS 3 Attack Vector NETWORK

An issue was discovered on Tenda AC11 devices with firmware through 02.03.01.104_CN. A stack buffer overflow vulnerability in /goform/setmac allows attackers to execute arbitrary code on the system via a crafted post request.

Cyber Threat Graph Context

Explore how this CVE relates to the wider threat graph

References