Impact
A stack-based buffer overflow exists in the RTSP service of the Tenda CP3 V3.0 router (firmware V31.1.9.91). An unauthenticated attacker can send a specially crafted SETUP request containing a URL that repeats a valid RTSP URI four times, bypassing initial formatting checks and overflowing a stack buffer, which causes the RTSP process to crash and leaves the device inaccessible to all clients on the local network.
Affected Systems
The affected device is the Tenda CP3 V3.0 wireless router running firmware version V31.1.9.91. No other firmware versions or additional products are listed as affected.
Risk and Exploitability
The flaw has a CVSS base severity denial-of-service impact. The EPSS score is below 1%, indicating that widespread exploitation is not yet evident. The vulnerability can be exploited remotely without authentication by contacting the router’s RTSP service on port 554 and delivering the crafted SETUP request; only basic network connectivity is required, making the risk significant for local network availability.
OpenCVE Enrichment