EXPOSURES › CVE-2023-48194
CVE-2023-48194
CRITICAL
DETAIL
SourceNVD · cve
Published2024-07-09
CVSS9.8
Referencehttps://nvd.nist.gov/vuln/detail/CVE-2023-48194 ↗
SHAME 35/100
Vulnerability in Tenda AC8v4 .V16.03.34.09 due to sscanf and the last digit of s8 being overwritten with \x0. After executing set_client_qos, control over the gp register can be obtained.
▸ RECOMMENDED ACTION Critical severity — schedule patching of the affected products.
PLAYERS IMPLICATED
DESCRIPTION
Vulnerability in Tenda AC8v4 .V16.03.34.09 due to sscanf and the last digit of s8 being overwritten with \x0. After executing set_client_qos, control over the gp register can be obtained.
AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.