PT-2024-23539 · Tenda · Tenda Fh1202

Published

2024-03-27

·

Updated

2024-08-16

·

CVE-2024-30636

CVSS v3.1

6.5

Medium

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Tenda F1202 version 1.2.0.20(408)
Description The issue is a stack overflow vulnerability that can be triggered via the PPPOEPassword parameter in the formQuickIndex function.
Recommendations For Tenda F1202 version 1.2.0.20(408), avoid using the PPPOEPassword parameter in the formQuickIndex function until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Stack Overflow

Weakness Enumeration

Related Identifiers

BDU:2025-03192
CVE-2024-30636

Affected Products

Tenda Fh1202