Stack Overflow Vulnerability in Tenda FH1201 Router
CVE-2024-42941

7.5HIGH

Key Information:

Vendor
Tenda
Vendor
CVE Published:
15 August 2024

Summary

A notable vulnerability has been identified in the Tenda FH1201 router, particularly in the fromAdvSetWan function, where improper handling of the wanmode parameter can lead to a stack overflow. This flaw facilitates Denial of Service (DoS) attacks, allowing malicious users to disrupt the normal operations of the router through specifically crafted POST requests. The implications of this vulnerability are significant, as it can leave users without internet access and compromise the security of connected devices.

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

Collectors

NVD Database
.