Tenda AX1806 V1.0.0.1 contains a heap overflow vulnerability in setSchedWifi function, in which the src and v12 are directly obtained from http request parameter schedStartTime and schedEndTime without checking their size.
| Software | From | Fixed in |
|---|---|---|
| tenda / ax1806_firmware | 1.0.0.1 | 1.0.0.1.x |