CVE-2022-32385
moderate-risk
Published 2022-07-06
Tenda AC23 v16.03.07.44 is vulnerable to Stack Overflow that will allow for the execution of arbitrary code (remote).
Do I need to act?
~
3.1% chance of exploitation in next 30 days
EPSS score — moderate exploit probability
-
Not on CISA KEV list
No confirmed active exploitation reported to CISA
?
Patch status unknown
Check vendor advisories for fix availability and mitigation guidance
9
CVSS 9.8/10
Critical
NETWORK
/ LOW complexity
Affected Products (1)
Ac23 Ac2100 Firmware
Affected Vendors
References (8)
Not Applicable
http://ac23.com
Not Applicable
http://tenda.com
Not Applicable
http://ac23.com
Not Applicable
http://tenda.com
43
/ 100
moderate-risk
Severity
32/34 · Critical
Exploitability
6/34 · Minimal
Exposure
5/34 · Minimal