CVE-2024-3878 – Tenda F1202 webExcptypemanFilter fromwebExcptypemanFilter stack-based overflow
https://notcve.org/view.php?id=CVE-2024-3878
A vulnerability, which was classified as critical, has been found in Tenda F1202 1.2.0.20(408). Affected by this issue is the function fromwebExcptypemanFilter of the file /goform/webExcptypemanFilter. The manipulation of the argument page leads to stack-based buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. • https://github.com/abcdefg-png/IoT-vulnerable/blob/main/Tenda/F/F1202/fromwebExcptypemanFilter.md https://vuldb.com/?ctiid.260912 https://vuldb.com/?id.260912 https://vuldb.com/?submit.312821 • CWE-121: Stack-based Buffer Overflow •
CVE-2024-3877 – Tenda F1202 fromqossetting stack-based overflow
https://notcve.org/view.php?id=CVE-2024-3877
A vulnerability classified as critical was found in Tenda F1202 1.2.0.20(408). Affected by this vulnerability is the function fromqossetting of the file /goform/fromqossetting. The manipulation of the argument qos leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. • https://github.com/abcdefg-png/IoT-vulnerable/blob/main/Tenda/F/F1202/fromqossetting.md https://vuldb.com/?ctiid.260911 https://vuldb.com/?id.260911 https://vuldb.com/?submit.312820 • CWE-121: Stack-based Buffer Overflow •
CVE-2024-3876 – Tenda F1202 VirtualSer fromVirtualSer stack-based overflow
https://notcve.org/view.php?id=CVE-2024-3876
A vulnerability classified as critical has been found in Tenda F1202 1.2.0.20(408). Affected is the function fromVirtualSer of the file /goform/VirtualSer. The manipulation of the argument page leads to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. • https://github.com/abcdefg-png/IoT-vulnerable/blob/main/Tenda/F/F1202/fromVirtualSer.md https://vuldb.com/?ctiid.260910 https://vuldb.com/?id.260910 https://vuldb.com/?submit.312818 • CWE-121: Stack-based Buffer Overflow •
CVE-2024-3875 – Tenda F1202 Natlimit fromNatlimit stack-based overflow
https://notcve.org/view.php?id=CVE-2024-3875
A vulnerability was found in Tenda F1202 1.2.0.20(408). It has been rated as critical. This issue affects the function fromNatlimit of the file /goform/Natlimit. The manipulation of the argument page leads to stack-based buffer overflow. The attack may be initiated remotely. • https://github.com/abcdefg-png/IoT-vulnerable/blob/main/Tenda/F/F1202/fromNatlimit.md https://vuldb.com/?ctiid.260909 https://vuldb.com/?id.260909 https://vuldb.com/?submit.312817 • CWE-121: Stack-based Buffer Overflow •
CVE-2023-38938
https://notcve.org/view.php?id=CVE-2023-38938
Tenda F1202 V1.2.0.9, PA202 V1.1.2.5, PW201A V1.1.2.5 and FH1202 V1.2.0.9 were discovered to contain a stack overflow via the page parameter at /L7Im. • https://github.com/FirmRec/IoT-Vulns/tree/main/tenda/frmL7ImForm • CWE-787: Out-of-bounds Write •