Tenda FH1202 GetParentControlInfo stack-based overflow
CVE-2024-2987
What is CVE-2024-2987?
A stack-based buffer overflow vulnerability exists in the Tenda FH1202 router, specifically within the GetParentControlInfo function located in the /goform/GetParentControlInfo file. This vulnerability allows for the manipulation of the mac argument, leading to potential exploitation through remote attacks. The exploit has become publicly known, raising concerns about its usage in real-world scenarios. Despite early disclosure to the vendor, no response was received, potentially leaving users vulnerable to threats associated with this oversight.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
FH1202 1.2.0.14(408)
References
CVSS V3.1
CVSS V3.0
Timeline
- ๐พ
Exploit known to exist
Vulnerability published