cve,link,title,description,vendor,products,score,severity,epss,cisa,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2024-42955,https://securityvulnerability.io/vulnerability/CVE-2024-42955,Stack Overflow Vulnerability in Tenda FH1201 Router,"The Tenda FH1201 router version v1.2.0.14 is susceptible to a stack overflow vulnerability triggered by an improperly handled parameter in the fromSafeClientFilter function. By sending a specially crafted POST request, an attacker can exploit this vulnerability to initiate a Denial of Service (DoS) attack, disrupting the functionality of the device and potentially affecting users' network access. This highlights the need for prompt updates and security patches from Tenda to mitigate such threats.",Tenda,Fh1201 Firmware,7.5,HIGH,0.0004600000102072954,false,false,false,false,,false,false,2024-08-15T17:15:00.000Z,0 CVE-2024-42945,https://securityvulnerability.io/vulnerability/CVE-2024-42945,Stack Overflow Vulnerability in Tenda FH1201 Product by Tenda,Tenda FH1201 version 1.2.0.14 is susceptible to a stack overflow originating from the page parameter in the fromAddressNat function. An attacker can exploit this vulnerability by sending a specially crafted POST request which may result in a Denial of Service (DoS) condition. This flaw could disrupt the service availability of the impacted device and highlight the importance of timely software updates and security patches.,Tenda,Fh1201 Firmware,7.5,HIGH,0.0004600000102072954,false,false,false,false,,false,false,2024-08-15T17:15:00.000Z,0 CVE-2024-42946,https://securityvulnerability.io/vulnerability/CVE-2024-42946,Stack Overflow Vulnerability in Tenda FH1201 Router,"The Tenda FH1201 router is susceptible to a stack overflow vulnerability triggered through the `page` parameter in the `fromVirtualSer` function. This flaw permits attackers to execute arbitrary actions, leading to a Denial of Service (DoS) condition via specially crafted POST requests. Implementation of security measures is essential to mitigate the risks associated with this vulnerability.",Tenda,Fh1201 Firmware,7.5,HIGH,0.0004600000102072954,false,false,false,false,,false,false,2024-08-15T17:15:00.000Z,0 CVE-2024-42947,https://securityvulnerability.io/vulnerability/CVE-2024-42947,Arbitrary Command Execution Vulnerability in Tenda FH1201 Product,"The Tenda FH1201 v1.2.0.14 is susceptible to an arbitrary command execution vulnerability due to improper handling in the telnet service. An attacker can exploit this issue by sending a specially crafted HTTP request to the device. If successful, this could allow the attacker to execute arbitrary commands on the affected device, potentially compromising its integrity and security. This vulnerability highlights the importance of securing IoT devices against unauthorized access and ensuring that all services are properly configured and protected.",Tenda,Fh1201 Firmware,9.8,CRITICAL,0.0017500000540167093,false,false,false,false,,false,false,2024-08-15T17:15:00.000Z,0 CVE-2024-42948,https://securityvulnerability.io/vulnerability/CVE-2024-42948,Stack Overflow Vulnerability in Tenda FH1201 Router by Tenda,"The Tenda FH1201 router version 1.2.0.14 is susceptible to a stack overflow vulnerability stemming from improper handling of the 'delno' parameter in the 'fromPptpUserSetting' function. Attackers can exploit this vulnerability to send specially crafted POST requests, which can lead to a denial of service condition. As a result, legitimate users may experience disruptions in service, making it crucial for affected users to implement mitigations against potential attacks.",Tenda,Fh1201 Firmware,7.5,HIGH,0.0004600000102072954,false,false,false,false,,false,false,2024-08-15T17:15:00.000Z,0 CVE-2024-42949,https://securityvulnerability.io/vulnerability/CVE-2024-42949,Stack Overflow Vulnerability in Tenda FH1201 by Tenda Technology,"The Tenda FH1201 version 1.2.0.14 has a vulnerability that allows for a stack overflow through manipulation of the qos parameter in the fromqossetting function. Attackers can exploit this flaw by sending specially crafted POST requests, resulting in a Denial of Service (DoS). This presents a serious risk to users of the affected product, as the device may become unresponsive. Proper measures should be taken to mitigate this issue and protect the integrity of the network.",Tenda,Fh1201 Firmware,7.5,HIGH,0.0004600000102072954,false,false,false,false,,false,false,2024-08-15T17:15:00.000Z,0 CVE-2024-42950,https://securityvulnerability.io/vulnerability/CVE-2024-42950,Stack Overflow Vulnerability in Tenda FH1201 by Tenda Technology,"The Tenda FH1201, specifically version v1.2.0.14, is susceptible to a stack overflow vulnerability that can be exploited through a malformed POST request directed at the fromSafeClientFilter function. This flaw arises from improper handling of the Go parameter, allowing attackers to disrupt the normal operation of the device and potentially lead to a Denial of Service (DoS) condition. Security measures should be enacted to protect against such vulnerabilities, ensuring user devices remain secure from unauthorized disruptions.",Tenda,Fh1201 Firmware,7.5,HIGH,0.0004600000102072954,false,false,false,false,,false,false,2024-08-15T17:15:00.000Z,0 CVE-2024-42951,https://securityvulnerability.io/vulnerability/CVE-2024-42951,Stack Overflow Vulnerability in Tenda FH1201 Router,"The Tenda FH1201 version 1.2.0.14 has been identified as vulnerable to a stack overflow attack initiated via the mit_pptpusrpw parameter within the fromWizardHandle function. Attackers can exploit this vulnerability by sending specially crafted POST requests, which may lead to a Denial of Service (DoS). Users of the Tenda FH1201 should apply necessary security measures to mitigate the risks associated with this vulnerability.",Tenda,Fh1201 Firmware,7.5,HIGH,0.0004600000102072954,false,false,false,false,,false,false,2024-08-15T17:15:00.000Z,0 CVE-2024-42952,https://securityvulnerability.io/vulnerability/CVE-2024-42952,Stack Overflow Vulnerability in Tenda FH1201 Router,"The Tenda FH1201 router, specifically version 1.2.0.14, is susceptible to a stack overflow vulnerability identified in the fromqossetting function. This security flaw can be exploited by attackers through a specially crafted POST request, leading to a Denial of Service (DoS) condition. This vulnerability highlights the importance of securing IoT devices against potential exploitation that could disrupt normal operations.",Tenda,Fh1201 Firmware,7.5,HIGH,0.0004600000102072954,false,false,false,false,,false,false,2024-08-15T17:15:00.000Z,0 CVE-2024-42953,https://securityvulnerability.io/vulnerability/CVE-2024-42953,Stack Overflow Vulnerability in Tenda FH1201 Router,"The Tenda FH1201 router version 1.2.0.14 is susceptible to a stack overflow vulnerability specifically related to the PPW parameter in the fromWizardHandle function. By sending a specially crafted POST request, malicious actors can exploit this weakness to cause a Denial of Service (DoS), disrupting the normal operation of the device. This vulnerability poses significant risks to users, especially in IoT environments where routers serve as critical points of network connectivity.",Tenda,Fh1201 Firmware,7.5,HIGH,0.0004600000102072954,false,false,false,false,,false,false,2024-08-15T17:15:00.000Z,0 CVE-2024-42954,https://securityvulnerability.io/vulnerability/CVE-2024-42954,Stack Overflow Vulnerability in Tenda FH1201 by Tenda,"The Tenda FH1201 is prone to a stack overflow vulnerability due to improper handling of input parameters in the fromwebExcptypemanFilter function. This flaw enables attackers to exploit the device by sending specially crafted POST requests that can result in a Denial of Service (DoS). Affected users may experience interruptions in service, potentially leading to loss of access to the device and any connected services.",Tenda,Fh1201 Firmware,7.5,HIGH,0.0004600000102072954,false,false,false,false,,false,false,2024-08-15T17:15:00.000Z,0 CVE-2024-42941,https://securityvulnerability.io/vulnerability/CVE-2024-42941,Stack Overflow Vulnerability in Tenda FH1201 Router,"A notable vulnerability has been identified in the Tenda FH1201 router, particularly in the fromAdvSetWan function, where improper handling of the wanmode parameter can lead to a stack overflow. This flaw facilitates Denial of Service (DoS) attacks, allowing malicious users to disrupt the normal operations of the router through specifically crafted POST requests. The implications of this vulnerability are significant, as it can leave users without internet access and compromise the security of connected devices.",Tenda,Fh1201 Firmware,7.5,HIGH,0.0004600000102072954,false,false,false,false,,false,false,2024-08-15T17:15:00.000Z,0 CVE-2024-42940,https://securityvulnerability.io/vulnerability/CVE-2024-42940,Stack Overflow Vulnerability in Tenda FH1201 by Tenda Technology,"The Tenda FH1201, specifically version v1.2.0.14, contains a stack overflow vulnerability in the fromP2pListFilter function, triggered by the 'page' parameter. This weakness can be exploited by attackers to send crafted POST requests, resulting in a Denial of Service (DoS) condition. Such exploitation can lead to service interruptions, affecting the availability and functionality of the device.",Tenda,Fh1201 Firmware,7.5,HIGH,0.0004600000102072954,false,false,false,false,,false,false,2024-08-15T17:15:00.000Z,0 CVE-2024-42942,https://securityvulnerability.io/vulnerability/CVE-2024-42942,Stack Overflow Vulnerability in Tenda FH1201 Router,"The Tenda FH1201 version 1.2.0.14 contains a vulnerability due to a stack overflow present in the frmL7ImForm function. This flaw can be exploited by attackers through specially crafted POST requests, potentially causing a Denial of Service (DoS) condition. This vulnerability poses a risk to the availability of the device as malicious actors could make the device unresponsive.",Tenda,Fh1201 Firmware,7.5,HIGH,0.0004600000102072954,false,false,false,false,,false,false,2024-08-15T17:15:00.000Z,0 CVE-2024-42943,https://securityvulnerability.io/vulnerability/CVE-2024-42943,Stack Overflow Vulnerability in Tenda FH1201 Router,"The Tenda FH1201 version 1.2.0.14 is subject to a significant security flaw involving a stack overflow triggered by the PPPOEPassword parameter in the fromAdvSetWan function. This vulnerability allows an attacker to exploit the system by sending specially crafted POST requests, potentially leading to a Denial of Service (DoS). Users of this router should take immediate action to assess and remediate this vulnerability.",Tenda,Fh1201 Firmware,7.5,HIGH,0.0004600000102072954,false,false,false,false,,false,false,2024-08-15T17:15:00.000Z,0 CVE-2024-42944,https://securityvulnerability.io/vulnerability/CVE-2024-42944,Stack Overflow Vulnerability in Tenda FH1201 Router,"The Tenda FH1201 router version 1.2.0.14 is prone to a stack overflow vulnerability due to improper handling of the page parameter within the fromNatlimit function. Attackers can exploit this vulnerability by sending specially crafted POST requests, which may result in a Denial of Service (DoS), disrupting network service and device functionality. Users of affected versions should take necessary precautions to mitigate potential security risks.",Tenda,Fh1201 Firmware,7.5,HIGH,0.0004600000102072954,false,false,false,false,,false,false,2024-08-15T17:15:00.000Z,0 CVE-2024-41473,https://securityvulnerability.io/vulnerability/CVE-2024-41473,Command Injection Vulnerability in Tenda FH1201 v1.2.0.14,"The Tenda FH1201, specifically version v1.2.0.14, has a command injection vulnerability that can be exploited via the mac parameter at the ip/goform/WriteFacMac endpoint. This flaw may allow attackers to execute arbitrary commands on the system, potentially leading to unauthorized access or control over the affected device. Security measures should be implemented to safeguard against this vulnerability, including input validation and sanitization to mitigate the risk of exploitation.",Tenda,Fh1201 Firmware,9.8,CRITICAL,0.0014100000262260437,false,false,false,false,,false,false,2024-07-25T22:15:00.000Z,0 CVE-2024-41468,https://securityvulnerability.io/vulnerability/CVE-2024-41468,Tenda FH1201 Vulnerability: Command Injection Flaw Discovered,"The Tenda FH1201 router version v1.2.0.14 has a vulnerability that allows for command injection through the cmdinput parameter in the /goform/exeCommand endpoint. This flaw enables attackers to send crafted requests to execute arbitrary system commands, potentially leading to unauthorized access and control over the device. Users of this router should assess their exposure and apply necessary security measures to mitigate risks associated with this vulnerability.",Tenda,Fh1201 Firmware,9.8,CRITICAL,0.0006500000017695129,false,false,false,false,,false,false,2024-07-25T22:15:00.000Z,0 CVE-2024-41462,https://securityvulnerability.io/vulnerability/CVE-2024-41462,Stack-Based Buffer Overflow in Tenda FH1201 Router,"The Tenda FH1201 router version 1.2.0.14 has a vulnerability caused by a stack-based buffer overflow in the 'page' parameter within the ip/goform/DhcpListClient endpoint. This flaw can potentially be exploited to allow attackers to execute arbitrary code, leading to unauthorized access or manipulation of the device. Users are advised to apply security updates and monitor for any unusual activity as this vulnerability poses significant risks to network security and device integrity.",Tenda,Fh1201 Firmware,7.5,HIGH,0.0004600000102072954,false,false,false,false,,false,false,2024-07-24T00:00:00.000Z,0 CVE-2024-41463,https://securityvulnerability.io/vulnerability/CVE-2024-41463,Stack-Based Buffer Overflow in Tenda FH1201 Router,"The Tenda FH1201 router, specifically version 1.2.0.14, is vulnerable to a stack-based buffer overflow attack through the entrys parameter located at ip/goform/addressNat. This flaw enables potential attackers to execute arbitrary code, which can compromise the device's functionality and security, leading to unauthorized access and degradation of network integrity. It is critical for users of the Tenda FH1201 to apply appropriate security measures and updates to mitigate risks associated with this vulnerability.",Tenda,Fh1201 Firmware,7.5,HIGH,0.0004600000102072954,false,false,false,false,,false,false,2024-07-24T00:00:00.000Z,0 CVE-2024-41464,https://securityvulnerability.io/vulnerability/CVE-2024-41464,Stack-Based Buffer Overflow Vulnerability in Tenda FH1201 Router,"The Tenda FH1201 router version 1.2.0.14 is susceptible to a stack-based buffer overflow vulnerability via the 'mitInterface' parameter in the 'ip/goform/RouteStatic' interface. This vulnerability may allow an attacker to execute arbitrary code or cause a denial of service by leveraging crafted inputs, highlighting the importance of keeping the device firmware up to date for security.",Tenda,Fh1201 Firmware,7.5,HIGH,0.0004600000102072954,false,false,false,false,,false,false,2024-07-24T00:00:00.000Z,0 CVE-2024-41465,https://securityvulnerability.io/vulnerability/CVE-2024-41465,Stack-based Buffer Overflow in Tenda FH1201 Router,"The Tenda FH1201 router, specifically version v1.2.0.14, is susceptible to a stack-based buffer overflow due to improper handling of the funcpara1 parameter during interaction with the ip/goform/setcfm endpoint. Exploiting this vulnerability potentially allows an attacker to execute arbitrary code, affecting the integrity and availability of the device. Network environments utilizing this router should assess their security posture and implement necessary mitigations to safeguard against potential exploitation.",Tenda,Fh1201 Firmware,7.5,HIGH,0.0004600000102072954,false,false,false,false,,false,false,2024-07-24T00:00:00.000Z,0 CVE-2024-41466,https://securityvulnerability.io/vulnerability/CVE-2024-41466,Stack-Based Buffer Overflow in Tenda FH1201,"A stack-based buffer overflow vulnerability was identified in the Tenda FH1201 router, specifically arising from the improper handling of the 'page' parameter in the 'ip/goform/NatStaticSetting' endpoint. This vulnerability enables attackers to exploit the affected functionality, potentially resulting in arbitrary code execution or unexpected device behavior. Users of the Tenda FH1201 are urged to implement appropriate security measures to mitigate the risks associated with this vulnerability.",Tenda,Fh1201 Firmware,7.5,HIGH,0.0004600000102072954,false,false,false,false,,false,false,2024-07-24T00:00:00.000Z,0 CVE-2024-41460,https://securityvulnerability.io/vulnerability/CVE-2024-41460,Stack-Based Buffer Overflow in Tenda FH1201 Router,"The Tenda FH1201 router version 1.2.0.14 is vulnerable to a stack-based buffer overflow which occurs through the 'entrys' parameter at the path ip/goform/RouteStatic. Exploitation of this vulnerability could lead to unauthorized access and potential execution of arbitrary code on the affected device. This flaw highlights critical security concerns for users relying on this router model, emphasizing the importance of prompt patching and vigilance in network security.",Tenda,Fh1201 Firmware,9.8,CRITICAL,0.0013200000394135714,false,false,false,false,,false,false,2024-07-24T00:00:00.000Z,0 CVE-2024-41459,https://securityvulnerability.io/vulnerability/CVE-2024-41459,Stack-based Buffer Overflow in Tenda FH1201 Router,"The Tenda FH1201 router version 1.2.0.14 is vulnerable to a stack-based buffer overflow due to improper validation of the PPPOEPassword parameter at the ip/goform/QuickIndex endpoint. This vulnerability can be exploited by an attacker to execute arbitrary code on the affected device, potentially compromising the router's integrity and security. Users of the Tenda FH1201 should take immediate action to secure their devices against potential exploitation.",Tenda,Fh1201 Firmware,9.8,CRITICAL,0.0013200000394135714,false,false,false,false,,false,false,2024-07-24T00:00:00.000Z,0