Critical severity9.8NVD Advisory· Published Aug 12, 2022· Updated Jun 17, 2026
CVE-2022-35559
CVE-2022-35559
Description
A stack overflow vulnerability exists in /goform/setAutoPing in Tenda W6 V1.0.0.9(4122), which allows an attacker to construct ping1 parameters and ping2 parameters for a stack overflow attack. An attacker can use this vulnerability to execute arbitrary code execution.
Affected products
3- cpe:2.3:o:tenda:w6_firmware:1.0.0.9\(4122\):*:*:*:*:*:*:*
- Tenda/W6description
Patches
Vulnerability mechanics
References
1- github.com/ilovekeer/IOT/tree/main/Tenda/W6/stackoverflow/formSetAutoPingnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.