CVE-2024-4246 – Tenda i21 formQosManageDouble_auto stack-based overflow
https://notcve.org/view.php?id=CVE-2024-4246
A vulnerability, which was classified as critical, was found in Tenda i21 1.0.0.14(4656). This affects the function formQosManageDouble_auto. The manipulation of the argument ssidIndex leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The identifier VDB-262137 was assigned to this vulnerability. • https://github.com/abcdefg-png/IoT-vulnerable/blob/main/Tenda/i/i21/formQosManageDouble_user.md https://vuldb.com/?ctiid.262137 https://vuldb.com/?id.262137 https://vuldb.com/?submit.319831 • CWE-121: Stack-based Buffer Overflow •
CVE-2024-4245 – Tenda i21 formQosManageDouble_user stack-based overflow
https://notcve.org/view.php?id=CVE-2024-4245
A vulnerability, which was classified as critical, has been found in Tenda i21 1.0.0.14(4656). Affected by this issue is the function formQosManageDouble_user. The manipulation of the argument ssidIndex leads to stack-based buffer overflow. The attack may be launched remotely. The identifier of this vulnerability is VDB-262136. • https://github.com/abcdefg-png/IoT-vulnerable/blob/main/Tenda/i/i21/formQosManageDouble_auto.md https://vuldb.com/?ctiid.262136 https://vuldb.com/?id.262136 https://vuldb.com/?submit.319830 • CWE-121: Stack-based Buffer Overflow •
CVE-2024-4244 – Tenda W9 DhcpSetSer fromDhcpSetSer stack-based overflow
https://notcve.org/view.php?id=CVE-2024-4244
A vulnerability classified as critical was found in Tenda W9 1.0.0.7(4456). Affected by this vulnerability is the function fromDhcpSetSer of the file /goform/DhcpSetSer. The manipulation of the argument dhcpStartIp/dhcpEndIp/dhcpGw/dhcpMask/dhcpLeaseTime/dhcpDns1/dhcpDns2 leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. • https://github.com/abcdefg-png/IoT-vulnerable/blob/main/Tenda/W9/fromDhcpSetSer.md https://vuldb.com/?ctiid.262135 https://vuldb.com/?id.262135 https://vuldb.com/?submit.319826 • CWE-121: Stack-based Buffer Overflow •
CVE-2024-4243 – Tenda W9 wifiSSIDset formwrlSSIDset stack-based overflow
https://notcve.org/view.php?id=CVE-2024-4243
A vulnerability classified as critical has been found in Tenda W9 1.0.0.7(4456). Affected is the function formwrlSSIDset of the file /goform/wifiSSIDset. The manipulation of the argument ssidIndex leads to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. • https://github.com/abcdefg-png/IoT-vulnerable/blob/main/Tenda/W9/formwrlSSIDset.md https://vuldb.com/?ctiid.262134 https://vuldb.com/?id.262134 https://vuldb.com/?submit.319825 • CWE-121: Stack-based Buffer Overflow •
CVE-2024-4242 – Tenda W9 wifiSSIDget formwrlSSIDget stack-based overflow
https://notcve.org/view.php?id=CVE-2024-4242
A vulnerability was found in Tenda W9 1.0.0.7(4456). It has been rated as critical. This issue affects the function formwrlSSIDget of the file /goform/wifiSSIDget. The manipulation of the argument ssidIndex leads to stack-based buffer overflow. The attack may be initiated remotely. • https://github.com/abcdefg-png/IoT-vulnerable/blob/main/Tenda/W9/formwrlSSIDget.md https://vuldb.com/?ctiid.262133 https://vuldb.com/?id.262133 https://vuldb.com/?submit.319824 • CWE-121: Stack-based Buffer Overflow •