CVE-2023-50987

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Dec 20, 2023
Updated: Dec 22, 2023
CWE ID 787

Summary

CVE-2023-50987: A critical buffer overflow vulnerability (CVE-2023-50987) has been identified in the Tenda i29 v1.0 V1.0.0.5 firmware. The issue lies within the sysTimeInfoSet function, which is susceptible to an attack via the time parameter. Successful exploitation could result in arbitrary code execution, leading to potential unauthorized access, data theft, or device takeover. It is strongly recommended that users update their Tenda i29 devices to the latest firmware version to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share