Tenda F1202 Firmware vulnerabilities
24 known vulnerabilities affecting tenda/f1202_firmware.
Total CVEs
24
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL14HIGH6MEDIUM4
Vulnerabilities
Page 1 of 2
CVE-2024-3877P2HIGHCVSS 8.8v1.2.0.20\(408\)2024-04-16
CVE-2024-3877 [HIGH] CWE-121 CVE-2024-3877: A vulnerability classified as critical was found in Tenda F1202 1.2.0.20(408). Affected by this vuln
A vulnerability classified as critical was found in Tenda F1202 1.2.0.20(408). Affected by this vulnerability is the function fromqossetting of the file /goform/fromqossetting. The manipulation of the argument qos leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The
nvd
CVE-2024-3876P2HIGHCVSS 8.8v1.2.0.20\(408\)2024-04-16
CVE-2024-3876 [HIGH] CWE-121 CVE-2024-3876: A vulnerability classified as critical has been found in Tenda F1202 1.2.0.20(408). Affected is the
A vulnerability classified as critical has been found in Tenda F1202 1.2.0.20(408). Affected is the function fromVirtualSer of the file /goform/VirtualSer. The manipulation of the argument page leads to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-260910 is th
nvd
CVE-2024-3875P2HIGHCVSS 8.8v1.2.0.20\(408\)2024-04-16
CVE-2024-3875 [HIGH] CWE-121 CVE-2024-3875: A vulnerability was found in Tenda F1202 1.2.0.20(408). It has been rated as critical. This issue af
A vulnerability was found in Tenda F1202 1.2.0.20(408). It has been rated as critical. This issue affects the function fromNatlimit of the file /goform/Natlimit. The manipulation of the argument page leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VD
nvd
CVE-2024-3878P2HIGHCVSS 8.8v1.2.0.20\(408\)2024-04-16
CVE-2024-3878 [HIGH] CWE-121 CVE-2024-3878: A vulnerability, which was classified as critical, has been found in Tenda F1202 1.2.0.20(408). Affe
A vulnerability, which was classified as critical, has been found in Tenda F1202 1.2.0.20(408). Affected by this issue is the function fromwebExcptypemanFilter of the file /goform/webExcptypemanFilter. The manipulation of the argument page leads to stack-based buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the pu
nvd
CVE-2024-30635P3CRITICALCVSS 9.8v1.2.0.20\(408\)2024-03-29
CVE-2024-30635 [CRITICAL] CWE-120 CVE-2024-30635: Tenda F1202 v1.2.0.20(408) has a stack overflow vulnerability located in the funcpara1 parameter in
Tenda F1202 v1.2.0.20(408) has a stack overflow vulnerability located in the funcpara1 parameter in the formSetCfm function.
nvd
CVE-2023-37712P3CRITICALCVSS 9.8v1.2.0.20\(408\)2023-07-10
CVE-2023-37712 [CRITICAL] CWE-787 CVE-2023-37712: Tenda AC1206 V15.03.06.23, F1202 V1.2.0.20(408), and FH1202 V1.2.0.20(408) were discovered to contai
Tenda AC1206 V15.03.06.23, F1202 V1.2.0.20(408), and FH1202 V1.2.0.20(408) were discovered to contain a stack overflow in the page parameter in the fromSetIpBind function.
nvd
CVE-2023-37714P3CRITICALCVSS 9.8v1.2.0.20\(408\)v1.0br2023-07-14
CVE-2023-37714 [CRITICAL] CWE-787 CVE-2023-37714: Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow i
Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow in the page parameter in the function fromRouteStatic.
nvd
CVE-2023-37719P3CRITICALCVSS 9.8v1.2.0.20\(408\)v1.0br2023-07-14
CVE-2023-37719 [CRITICAL] CWE-787 CVE-2023-37719: Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow i
Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow in the page parameter in the function fromP2pListFilter.
nvd
CVE-2023-37721P3CRITICALCVSS 9.8v1.2.0.20\(408\)v1.0br2023-07-14
CVE-2023-37721 [CRITICAL] CWE-787 CVE-2023-37721: Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow i
Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow in the page parameter in the function fromSafeMacFilter.
nvd
CVE-2023-37718P3CRITICALCVSS 9.8v1.2.0.20\(408\)v1.0br2023-07-14
CVE-2023-37718 [CRITICAL] CWE-787 CVE-2023-37718: Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow i
Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow in the page parameter in the function fromSafeClientFilter.
nvd
CVE-2023-37722P3CRITICALCVSS 9.8v1.2.0.20\(408\)v1.0br2023-07-14
CVE-2023-37722 [CRITICAL] CWE-787 CVE-2023-37722: Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow i
Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow in the page parameter in the function fromSafeUrlFilter.
nvd
CVE-2023-37723P3CRITICALCVSS 9.8v1.2.0.20\(408\)v1.0br2023-07-14
CVE-2023-37723 [CRITICAL] CWE-787 CVE-2023-37723: Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow i
Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow in the page parameter in the function fromqossetting.
nvd
CVE-2023-37715P3CRITICALCVSS 9.8v1.2.0.20\(408\)v1.0br2023-07-14
CVE-2023-37715 [CRITICAL] CWE-787 CVE-2023-37715: Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow i
Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow in the page parameter in the function frmL7ProtForm.
nvd
CVE-2023-38939P3CRITICALCVSS 9.8v1.2.0.92023-08-07
CVE-2023-38939 [CRITICAL] CWE-787 CVE-2023-38939: Tenda F1202 V1.2.0.9 and FH1202 V1.2.0.9 were discovered to contain a stack overflow via the mit_ssi
Tenda F1202 V1.2.0.9 and FH1202 V1.2.0.9 were discovered to contain a stack overflow via the mit_ssid parameter in the formWrlsafeset function.
nvd
CVE-2024-30637P3HIGHCVSS 8.8v1.2.0.20\(408\)2024-03-29
CVE-2024-30637 [HIGH] CWE-77 CVE-2024-30637: Tenda F1202 v1.2.0.20(408) has a command injection vulnerablility in the formWriteFacMac function in
Tenda F1202 v1.2.0.20(408) has a command injection vulnerablility in the formWriteFacMac function in the mac parameter.
nvd
CVE-2023-38938P3CRITICALCVSS 9.8v1.2.0.92023-08-07
CVE-2023-38938 [CRITICAL] CWE-787 CVE-2023-38938: Tenda F1202 V1.2.0.9, PA202 V1.1.2.5, PW201A V1.1.2.5 and FH1202 V1.2.0.9 were discovered to contain
Tenda F1202 V1.2.0.9, PA202 V1.1.2.5, PW201A V1.1.2.5 and FH1202 V1.2.0.9 were discovered to contain a stack overflow via the page parameter at /L7Im.
nvd
CVE-2023-37716P3CRITICALCVSS 9.8v1.2.0.20\(408\)v1.0br2023-07-14
CVE-2023-37716 [CRITICAL] CWE-787 CVE-2023-37716: Tenda F1202 V1.0BR_V1.2.0.20(408) and FH1202_V1.2.0.19_EN, AC10 V1.0, AC1206 V1.0, AC7 V1.0, AC5 V1.
Tenda F1202 V1.0BR_V1.2.0.20(408) and FH1202_V1.2.0.19_EN, AC10 V1.0, AC1206 V1.0, AC7 V1.0, AC5 V1.0, and AC9 V3.0 were discovered to contain a stack overflow in the page parameter in the function fromNatStaticSetting.
nvd
CVE-2023-37717P3CRITICALCVSS 9.8v1.2.0.20\(408\)v1.0br2023-07-14
CVE-2023-37717 [CRITICAL] CWE-787 CVE-2023-37717: Tenda F1202 V1.0BR_V1.2.0.20(408) and FH1202_V1.2.0.19_EN, AC10 V1.0, AC1206 V1.0, AC7 V1.0, AC5 V1.
Tenda F1202 V1.0BR_V1.2.0.20(408) and FH1202_V1.2.0.19_EN, AC10 V1.0, AC1206 V1.0, AC7 V1.0, AC5 V1.0, and AC9 V3.0 were discovered to contain a stack overflow in the page parameter in the function fromDhcpListClient.
nvd
CVE-2023-38932P3CRITICALCVSS 9.8v1.2.0.92023-08-07
CVE-2023-38932 [CRITICAL] CWE-787 CVE-2023-38932: Tenda F1202 V1.2.0.9, PA202 V1.1.2.5, PW201A V1.1.2.5 and FH1202 V1.2.0.9 were discovered to contain
Tenda F1202 V1.2.0.9, PA202 V1.1.2.5, PW201A V1.1.2.5 and FH1202 V1.2.0.9 were discovered to contain a stack overflow via the page parameter in the SafeEmailFilter function.
nvd
CVE-2024-30634P3HIGHCVSS 8.0v1.2.0.20\(408\)2024-03-29
CVE-2024-30634 [HIGH] CWE-121 CVE-2024-30634: Tenda F1202 v1.2.0.20(408) has a stack overflow vulnerability via the mitInterface parameter in the
Tenda F1202 v1.2.0.20(408) has a stack overflow vulnerability via the mitInterface parameter in the fromAddressNat function.
nvd
1 / 2Next →