CVE-2023-33669

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Jun 2, 2023
Updated: Jan 8, 2025
CWE ID 787

Summary

CVE-2023-33669 is a newly disclosed vulnerability affecting the Tenda AC8V firmware version 4.0-V16.03.34.06. This issue involves a stack overflow, which can be triggered through the timeZone parameter in the sub_44db3c function. An attacker who successfully exploits this vulnerability could potentially gain unauthorized access or cause the device to crash, leading to a denial-of-service condition. Users are strongly advised to update their Tenda AC8V routers to the latest firmware version, which addresses this issue and improves overall security.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share