CVE-2024-30637: Command Injection
Published Mar 29, 2024
·Updated
Tenda F1202 v1.2.0.20(408) has a command injection vulnerablility in the formWriteFacMac function in the mac parameter.
Affected Software
3 affected components
Tenda F1202
All of the following
Tenda F1202 Firmware=1.2.0.20\(408\)
Tenda F1202
Event History
Mar 29, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-30637?
The severity of CVE-2024-30637 is high due to the command injection vulnerability in the Tenda F1202 device.
2
How do I fix CVE-2024-30637?
To fix CVE-2024-30637, update the firmware of the Tenda F1202 to the latest version provided by Tenda.
3
What products are affected by CVE-2024-30637?
CVE-2024-30637 specifically affects the Tenda F1202 device running firmware v1.2.0.20(408).
4
What does the command injection vulnerability in CVE-2024-30637 allow an attacker to do?
The command injection vulnerability in CVE-2024-30637 allows an attacker to execute arbitrary commands on the Tenda F1202.
5
Is there a public exploit for CVE-2024-30637?
Yes, there are known techniques that can be used to exploit the command injection vulnerability in CVE-2024-30637.