CVE-2024-2896 – Tenda AC7 WifiWpsStart formWifiWpsStart stack-based overflow
https://notcve.org/view.php?id=CVE-2024-2896
A vulnerability was found in Tenda AC7 15.03.06.44. It has been rated as critical. This issue affects the function formWifiWpsStart of the file /goform/WifiWpsStart. The manipulation of the argument index leads to stack-based buffer overflow. The attack may be initiated remotely. • https://github.com/abcdefg-png/IoT-vulnerable/blob/main/Tenda/AC7/v1/formWifiWpsStart.md https://vuldb.com/?ctiid.257939 https://vuldb.com/?id.257939 https://vuldb.com/?submit.300359 • CWE-121: Stack-based Buffer Overflow •
CVE-2024-2895 – Tenda AC7 WifiWpsOOB formWifiWpsOOB stack-based overflow
https://notcve.org/view.php?id=CVE-2024-2895
A vulnerability was found in Tenda AC7 15.03.06.44. It has been declared as critical. This vulnerability affects the function formWifiWpsOOB of the file /goform/WifiWpsOOB. The manipulation of the argument index leads to stack-based buffer overflow. The attack can be initiated remotely. • https://github.com/abcdefg-png/IoT-vulnerable/blob/main/Tenda/AC7/v1/formWifiWpsOOB.md https://vuldb.com/?ctiid.257938 https://vuldb.com/?id.257938 https://vuldb.com/?submit.300358 • CWE-121: Stack-based Buffer Overflow •
CVE-2024-2894 – Tenda AC7 SetNetControlList formSetQosBand stack-based overflow
https://notcve.org/view.php?id=CVE-2024-2894
A vulnerability was found in Tenda AC7 15.03.06.44. It has been classified as critical. This affects the function formSetQosBand of the file /goform/SetNetControlList. The manipulation of the argument list leads to stack-based buffer overflow. It is possible to initiate the attack remotely. • https://github.com/abcdefg-png/IoT-vulnerable/blob/main/Tenda/AC7/v1/formSetQosBand.md https://vuldb.com/?ctiid.257937 https://vuldb.com/?id.257937 https://vuldb.com/?submit.300357 • CWE-121: Stack-based Buffer Overflow •
CVE-2024-2893 – Tenda AC7 SetOnlineDevName formSetDeviceName stack-based overflow
https://notcve.org/view.php?id=CVE-2024-2893
A vulnerability was found in Tenda AC7 15.03.06.44 and classified as critical. Affected by this issue is the function formSetDeviceName of the file /goform/SetOnlineDevName. The manipulation of the argument devName leads to stack-based buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. • https://github.com/abcdefg-png/IoT-vulnerable/blob/main/Tenda/AC7/v1/formSetDeviceName_devName.md https://vuldb.com/?ctiid.257936 https://vuldb.com/?id.257936 https://vuldb.com/?submit.300356 • CWE-121: Stack-based Buffer Overflow •
CVE-2024-2892 – Tenda AC7 setcfm formSetCfm stack-based overflow
https://notcve.org/view.php?id=CVE-2024-2892
A vulnerability has been found in Tenda AC7 15.03.06.44 and classified as critical. Affected by this vulnerability is the function formSetCfm of the file /goform/setcfm. The manipulation of the argument funcpara1 leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. • https://github.com/abcdefg-png/IoT-vulnerable/blob/main/Tenda/AC7/v1/formSetCfm.md https://vuldb.com/?ctiid.257935 https://vuldb.com/?id.257935 https://vuldb.com/?submit.300355 • CWE-121: Stack-based Buffer Overflow •