PT-2024-23509 · Tenda · Tenda Fh1202

Published

2024-03-28

·

Updated

2024-08-28

·

CVE-2024-30591

CVSS v3.1

8.8

High

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Tenda FH1202 version 1.2.0.14(408)
Description The issue is a stack overflow vulnerability in the time parameter of the saveParentControlInfo function. This vulnerability can be exploited, potentially leading to unauthorized access or control.
Recommendations For Tenda FH1202 version 1.2.0.14(408), consider disabling the saveParentControlInfo function until a patch is available. Restrict access to the time parameter in the affected function to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Stack Overflow

Weakness Enumeration

Related Identifiers

CVE-2024-30591

Affected Products

Tenda Fh1202