{ "schema_version": "1.4.0", "id": "GHSA-cm66-w4c7-wx9w", "modified": "2022-05-24T19:01:52Z", "published": "2022-05-24T19:01:52Z", "aliases": [ "CVE-2021-31756" ], "details": "An issue was discovered on Tenda AC11 devices with firmware through 02.03.01.104_CN. A stack buffer overflow vulnerability in /gofrom/setwanType allows attackers to execute arbitrary code on the system via a crafted post request. This occurs when input vector controlled by malicious attack get copied to the stack variable.", "severity": [], "affected": [], "references": [ { "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-31756" }, { "type": "WEB", "url": "https://github.com/Yu3H0/IoT_CVE/tree/main/Tenda/CVE_1" } ], "database_specific": { "cwe_ids": [ "CWE-787" ], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2021-05-07T23:15:00Z" } }