CVE-2024-32291Stack-based Buffer Overflow in W30e Firmware

Severity
7.5HIGHNVD
EPSS
0.1%
top 64.65%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedApr 17

Description

Tenda W30E v1.0 firmware v1.0.1.25(633) has a stack overflow vulnerability via the page parameter in the fromNatlimit function.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 3.9 | Impact: 3.6

Affected Packages1 packages

NVDtenda/w30e_firmware1.0.1.25\(633\)

🔴Vulnerability Details

2
GHSA
GHSA-q2pc-5mm4-68mj: Tenda W30E v12024-04-17
CVEList
CVE-2024-32291: Tenda W30E v12024-04-17
CVE-2024-32291 — Stack-based Buffer Overflow in Tenda | cvebase