PT-2024-24481 · Tenda · Tenda Fh1202

Published

2024-04-17

·

Updated

2025-04-09

·

CVE-2024-32282

CVSS v3.1

6.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions Tenda FH1202 version 1.2.0.14(408)
Description The issue is related to a command injection vulnerability in the formexeCommand function via the cmdinput parameter. This vulnerability allows for potential exploitation.
Recommendations For Tenda FH1202 version 1.2.0.14(408), consider disabling the formexeCommand function until a patch is available to prevent exploitation via the cmdinput parameter.

Fix

Command Injection

Weakness Enumeration

Related Identifiers

CVE-2024-32282

Affected Products

Tenda Fh1202