Stack-Based Buffer Overflow in Tenda FH1201
CVE-2024-41466
7.5HIGH
Summary
A stack-based buffer overflow vulnerability was identified in the Tenda FH1201 router, specifically arising from the improper handling of the 'page' parameter in the 'ip/goform/NatStaticSetting' endpoint. This vulnerability enables attackers to exploit the affected functionality, potentially resulting in arbitrary code execution or unexpected device behavior. Users of the Tenda FH1201 are urged to implement appropriate security measures to mitigate the risks associated with this vulnerability.
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
Collectors
NVD DatabaseMitre Database