CVE-2024-32293: High severity tenda w30e firmware vulnerability
Published Apr 17, 2024
·Updated
Tenda W30E v1.0 V1.0.1.25(633) firmware has a stack overflow vulnerability via the page parameter in the fromDhcpListClient function.
Affected Software
3 affected components
Tenda W30E
All of the following
Tenda W30e Firmware=1.0.1.25\(633\)
Tenda W30E
Event History
Apr 17, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-32293?
CVE-2024-32293 has a medium severity rating due to its potential for remote execution through stack overflow.
2
How do I fix CVE-2024-32293?
To mitigate CVE-2024-32293, ensure that your Tenda W30E firmware is updated to the latest version provided by the manufacturer.
3
What systems are affected by CVE-2024-32293?
CVE-2024-32293 specifically affects Tenda W30E devices running firmware version V1.0.1.25(633).
4
What type of vulnerability is CVE-2024-32293?
CVE-2024-32293 is classified as a stack overflow vulnerability triggered via the page parameter in the fromDhcpListClient function.
5
Who is the vendor for CVE-2024-32293?
The vendor for CVE-2024-32293 is Tenda, known for its networking devices including the W30E.