CVE-2023-45482 is a critical stack overflow vulnerability affecting Tenda AC10 routers running firmware version US_AC10V4.0si_V16.03.10.13_cn. This flaw, rated 9.8 CVSS (Critical), allows unauthenticated attackers to execute arbitrary code or cause a denial of service by sending a specially crafted request to the get_parentControl_list_Info function. There is currently no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this vulnerability. Organizations using affected Tenda AC10 devices should monitor for vendor updates and consider mitigation strategies.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
16.03.10.13CPE matchmatch criteria | cpe:2.3:o:tenda:ac10_firmware:16.03.10.13:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.