Stack Overflow Vulnerability in Tenda FH1201 Router
CVE-2024-42941
7.5HIGH
Summary
A notable vulnerability has been identified in the Tenda FH1201 router, particularly in the fromAdvSetWan function, where improper handling of the wanmode parameter can lead to a stack overflow. This flaw facilitates Denial of Service (DoS) attacks, allowing malicious users to disrupt the normal operations of the router through specifically crafted POST requests. The implications of this vulnerability are significant, as it can leave users without internet access and compromise the security of connected devices.
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Collectors
NVD Database