← 戻る
ネットワーク機器
CVE-2026-5604 high CVSS 8.8

A security flaw has been discovered in Tenda CH22 1.0.0.1. The impacted element is the function formCertLocalPrecreate of the file /goform/CertLocalPrecreate of the component Parameter Handler. Perfor...

概要

A security flaw has been discovered in Tenda CH22 1.0.0.1. The impacted element is the function formCertLocalPrecreate of the file /goform/CertLocalPrecreate of the component Parameter Handler. Performing a manipulation of the argument standard results in stack-based buffer overflow. Remote exploita...

AI要約 openai / gpt-4o

Tenda CH22 1.0.0.1において、Parameter HandlerコンポーネントのformCertLocalPrecreate関数に脆弱性が発見されました。特定の引数を操作することで、スタックベースのバッファオーバーフローが引き起こされ、リモートからの攻撃が可能です。この脆弱性のエクスプロイトは公表されており、攻撃に用いられる可能性があります。
❓ 何が問題か
Tenda CH22の特定の引数操作によりスタックベースのバッファオーバーフローが発生する脆弱性。
📍 影響範囲
Tenda CH22 1.0.0.1のParameter HandlerコンポーネントのformCertLocalPrecreate関数
🔥 重要度
リモートからの攻撃が可能で高い危険性がある。エクスプロイトが公になっているため悪用されるリスクがある。
🔧 修正方法
情報なし
🛡️ 暫定回避
情報なし
🔍 検知方法
公開されたエクスプロイトを用いて影響を受けるかどうか確認する。

参照URL

🍪 Cookie について

当サイトはログイン状態の保持・言語設定・サービス改善のために Cookie を使用します。詳細は下記リンクをご確認ください。

詳細 →