Tenda Fh1202 Firmware vulnerabilities
61 known vulnerabilities affecting tenda/fh1202_firmware.
Total CVEs
61
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL19HIGH23MEDIUM19
Vulnerabilities
Page 3 of 4
CVE-2024-2986HIGHCVSS 8.8v1.2.0.14\(408\)2024-03-27
CVE-2024-2986 [HIGH] CWE-121 CVE-2024-2986: A vulnerability was found in Tenda FH1202 1.2.0.14(408). It has been rated as critical. This issue a
A vulnerability was found in Tenda FH1202 1.2.0.14(408). It has been rated as critical. This issue affects the function formSetSpeedWan of the file /goform/SetSpeedWan. The manipulation of the argument speed_dir leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The a
nvd
CVE-2024-2983HIGHCVSS 8.8v1.2.0.14\(408\)2024-03-27
CVE-2024-2983 [HIGH] CWE-121 CVE-2024-2983: A vulnerability was found in Tenda FH1202 1.2.0.14(408) and classified as critical. Affected by this
A vulnerability was found in Tenda FH1202 1.2.0.14(408) and classified as critical. Affected by this issue is the function formSetClientState of the file /goform/SetClientState. The manipulation of the argument deviceId/limitSpeed/limitSpeedUp leads to stack-based buffer overflow. The attack may be launched remotely. The exploit has been disclosed to th
nvd
CVE-2024-2985HIGHCVSS 8.8v1.2.0.14\(408\)2024-03-27
CVE-2024-2985 [HIGH] CWE-121 CVE-2024-2985: A vulnerability was found in Tenda FH1202 1.2.0.14(408). It has been declared as critical. This vuln
A vulnerability was found in Tenda FH1202 1.2.0.14(408). It has been declared as critical. This vulnerability affects the function formQuickIndex of the file /goform/QuickIndex. The manipulation of the argument PPPOEPassword leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may b
nvd
CVE-2024-2984HIGHCVSS 8.8v1.2.0.14\(408\)2024-03-27
CVE-2024-2984 [HIGH] CWE-121 CVE-2024-2984: A vulnerability was found in Tenda FH1202 1.2.0.14(408). It has been classified as critical. This af
A vulnerability was found in Tenda FH1202 1.2.0.14(408). It has been classified as critical. This affects the function formSetCfm of the file /goform/setcfm. The manipulation of the argument funcpara1 leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The id
nvd
CVE-2024-2987HIGHCVSS 8.8v1.2.0.14\(408\)2024-03-27
CVE-2024-2987 [HIGH] CWE-121 CVE-2024-2987: A vulnerability classified as critical has been found in Tenda FH1202 1.2.0.14(408). Affected is the
A vulnerability classified as critical has been found in Tenda FH1202 1.2.0.14(408). Affected is the function GetParentControlInfo of the file /goform/GetParentControlInfo. The manipulation of the argument mac leads to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
nvd
CVE-2024-2982HIGHCVSS 8.8v1.2.0.14\(408\)2024-03-27
CVE-2024-2982 [MEDIUM] CWE-77 CVE-2024-2982: A vulnerability has been found in Tenda FH1202 1.2.0.14(408) and classified as critical. Affected by
A vulnerability has been found in Tenda FH1202 1.2.0.14(408) and classified as critical. Affected by this vulnerability is the function formWriteFacMac of the file /goform/WriteFacMac. The manipulation of the argument mac leads to command injection. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerab
nvd
CVE-2024-2980HIGHCVSS 8.8v1.2.0.14\(408\)2024-03-27
CVE-2024-2980 [HIGH] CWE-121 CVE-2024-2980: A vulnerability, which was classified as critical, has been found in Tenda FH1202 1.2.0.14(408). Thi
A vulnerability, which was classified as critical, has been found in Tenda FH1202 1.2.0.14(408). This issue affects the function formexeCommand of the file /goform/execCommand. The manipulation of the argument cmdinput leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used
nvd
CVE-2024-2981HIGHCVSS 8.8v1.2.0.14\(408\)2024-03-27
CVE-2024-2981 [HIGH] CWE-121 CVE-2024-2981: A vulnerability, which was classified as critical, was found in Tenda FH1202 1.2.0.14(408). Affected
A vulnerability, which was classified as critical, was found in Tenda FH1202 1.2.0.14(408). Affected is the function form_fast_setting_wifi_set of the file /goform/fast_setting_wifi_set. The manipulation of the argument ssid leads to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public a
nvd
CVE-2023-38932CRITICALCVSS 9.8v1.2.0.92023-08-07
CVE-2023-38932 [CRITICAL] CWE-787 CVE-2023-38932: Tenda F1202 V1.2.0.9, PA202 V1.1.2.5, PW201A V1.1.2.5 and FH1202 V1.2.0.9 were discovered to contain
Tenda F1202 V1.2.0.9, PA202 V1.1.2.5, PW201A V1.1.2.5 and FH1202 V1.2.0.9 were discovered to contain a stack overflow via the page parameter in the SafeEmailFilter function.
nvd
CVE-2023-38938CRITICALCVSS 9.8v1.2.0.92023-08-07
CVE-2023-38938 [CRITICAL] CWE-787 CVE-2023-38938: Tenda F1202 V1.2.0.9, PA202 V1.1.2.5, PW201A V1.1.2.5 and FH1202 V1.2.0.9 were discovered to contain
Tenda F1202 V1.2.0.9, PA202 V1.1.2.5, PW201A V1.1.2.5 and FH1202 V1.2.0.9 were discovered to contain a stack overflow via the page parameter at /L7Im.
nvd
CVE-2023-38939CRITICALCVSS 9.8v1.2.0.92023-08-07
CVE-2023-38939 [CRITICAL] CWE-787 CVE-2023-38939: Tenda F1202 V1.2.0.9 and FH1202 V1.2.0.9 were discovered to contain a stack overflow via the mit_ssi
Tenda F1202 V1.2.0.9 and FH1202 V1.2.0.9 were discovered to contain a stack overflow via the mit_ssid parameter in the formWrlsafeset function.
nvd
CVE-2023-37714CRITICALCVSS 9.8v1.2.0.19_en2023-07-14
CVE-2023-37714 [CRITICAL] CWE-787 CVE-2023-37714: Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow i
Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow in the page parameter in the function fromRouteStatic.
nvd
CVE-2023-37716CRITICALCVSS 9.8v1.2.0.19_en2023-07-14
CVE-2023-37716 [CRITICAL] CWE-787 CVE-2023-37716: Tenda F1202 V1.0BR_V1.2.0.20(408) and FH1202_V1.2.0.19_EN, AC10 V1.0, AC1206 V1.0, AC7 V1.0, AC5 V1.
Tenda F1202 V1.0BR_V1.2.0.20(408) and FH1202_V1.2.0.19_EN, AC10 V1.0, AC1206 V1.0, AC7 V1.0, AC5 V1.0, and AC9 V3.0 were discovered to contain a stack overflow in the page parameter in the function fromNatStaticSetting.
nvd
CVE-2023-37717CRITICALCVSS 9.8v1.2.0.19_en2023-07-14
CVE-2023-37717 [CRITICAL] CWE-787 CVE-2023-37717: Tenda F1202 V1.0BR_V1.2.0.20(408) and FH1202_V1.2.0.19_EN, AC10 V1.0, AC1206 V1.0, AC7 V1.0, AC5 V1.
Tenda F1202 V1.0BR_V1.2.0.20(408) and FH1202_V1.2.0.19_EN, AC10 V1.0, AC1206 V1.0, AC7 V1.0, AC5 V1.0, and AC9 V3.0 were discovered to contain a stack overflow in the page parameter in the function fromDhcpListClient.
nvd
CVE-2023-37719CRITICALCVSS 9.8v1.2.0.19_en2023-07-14
CVE-2023-37719 [CRITICAL] CWE-787 CVE-2023-37719: Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow i
Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow in the page parameter in the function fromP2pListFilter.
nvd
CVE-2023-37721CRITICALCVSS 9.8v1.2.0.19_en2023-07-14
CVE-2023-37721 [CRITICAL] CWE-787 CVE-2023-37721: Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow i
Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow in the page parameter in the function fromSafeMacFilter.
nvd
CVE-2023-37718CRITICALCVSS 9.8v1.2.0.19_en2023-07-14
CVE-2023-37718 [CRITICAL] CWE-787 CVE-2023-37718: Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow i
Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow in the page parameter in the function fromSafeClientFilter.
nvd
CVE-2023-37722CRITICALCVSS 9.8v1.2.0.19_en2023-07-14
CVE-2023-37722 [CRITICAL] CWE-787 CVE-2023-37722: Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow i
Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow in the page parameter in the function fromSafeUrlFilter.
nvd
CVE-2023-37723CRITICALCVSS 9.8v1.2.0.19_en2023-07-14
CVE-2023-37723 [CRITICAL] CWE-787 CVE-2023-37723: Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow i
Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow in the page parameter in the function fromqossetting.
nvd
CVE-2023-37715CRITICALCVSS 9.8v1.2.0.19_en2023-07-14
CVE-2023-37715 [CRITICAL] CWE-787 CVE-2023-37715: Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow i
Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow in the page parameter in the function frmL7ProtForm.
nvd