Critical severity9.8NVD Advisory· Published Aug 30, 2023· Updated Jun 17, 2026
CVE-2023-41561
CVE-2023-41561
Description
Tenda AC9 V3.0 V15.03.06.42_multi and Tenda AC5 US_AC5V1.0RTL_V15.03.06.28 were discovered to contain a stack overflow via parameter startIp and endIp at url /goform/SetPptpServerCfg.
Affected products
5- cpe:2.3:o:tenda:ac5_firmware:15.03.06.28:*:*:*:*:*:*:*
- cpe:2.3:o:tenda:ac9_firmware:15.03.06.42_multi:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- github.com/peris-navince/founded-0-days/blob/main/formSetPPTPServer/1.mdnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.