CVE-2024-0542 – Tenda W9 httpd formWifiMacFilterGet stack-based overflow
https://notcve.org/view.php?id=CVE-2024-0542
A vulnerability was found in Tenda W9 1.0.0.7(4456). It has been rated as critical. Affected by this issue is the function formWifiMacFilterGet of the component httpd. The manipulation of the argument index leads to stack-based buffer overflow. The attack may be launched remotely. • https://github.com/jylsec/vuldb/blob/main/Tenda/W9/7/README.md https://vuldb.com/?ctiid.250712 https://vuldb.com/?id.250712 • CWE-121: Stack-based Buffer Overflow CWE-787: Out-of-bounds Write •
CVE-2024-0541 – Tenda W9 httpd formAddSysLogRule stack-based overflow
https://notcve.org/view.php?id=CVE-2024-0541
A vulnerability was found in Tenda W9 1.0.0.7(4456). It has been declared as critical. Affected by this vulnerability is the function formAddSysLogRule of the component httpd. The manipulation of the argument sysRulenEn leads to stack-based buffer overflow. The attack can be launched remotely. • https://github.com/jylsec/vuldb/blob/main/Tenda/W9/6/README.md https://vuldb.com/?ctiid.250711 https://vuldb.com/?id.250711 • CWE-121: Stack-based Buffer Overflow CWE-787: Out-of-bounds Write •
CVE-2024-0540 – Tenda W9 httpd formOfflineSet stack-based overflow
https://notcve.org/view.php?id=CVE-2024-0540
A vulnerability was found in Tenda W9 1.0.0.7(4456). It has been classified as critical. Affected is the function formOfflineSet of the component httpd. The manipulation of the argument ssidIndex leads to stack-based buffer overflow. It is possible to launch the attack remotely. • https://github.com/jylsec/vuldb/blob/main/Tenda/W9/5/README.md https://vuldb.com/?ctiid.250710 https://vuldb.com/?id.250710 • CWE-121: Stack-based Buffer Overflow CWE-787: Out-of-bounds Write •
CVE-2024-0539 – Tenda W9 httpd formQosManage_user stack-based overflow
https://notcve.org/view.php?id=CVE-2024-0539
A vulnerability was found in Tenda W9 1.0.0.7(4456) and classified as critical. This issue affects the function formQosManage_user of the component httpd. The manipulation of the argument ssidIndex leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. • https://github.com/jylsec/vuldb/blob/main/Tenda/W9/4/README.md https://vuldb.com/?ctiid.250709 https://vuldb.com/?id.250709 • CWE-121: Stack-based Buffer Overflow CWE-787: Out-of-bounds Write •
CVE-2024-0538 – Tenda W9 httpd formQosManage_auto stack-based overflow
https://notcve.org/view.php?id=CVE-2024-0538
A vulnerability has been found in Tenda W9 1.0.0.7(4456) and classified as critical. This vulnerability affects the function formQosManage_auto of the component httpd. The manipulation of the argument ssidIndex leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. • https://github.com/jylsec/vuldb/blob/main/Tenda/W9/3/README.md https://vuldb.com/?ctiid.250708 https://vuldb.com/?id.250708 • CWE-121: Stack-based Buffer Overflow CWE-787: Out-of-bounds Write •