CVE-2024-34946: Buffer Overflow
Published May 14, 2024
·Updated
Tenda FH1206 V1.2.0.8(8155)EN was discovered to contain a stack-based buffer overflow vulnerability via the page parameter at ip/goform/DhcpListClient.
Affected Software
3 affected components
Tenda FH1206
All of the following
Tenda Fh1206 Firmware=1.2.0.8\(8155\)_en
Tenda FH1206
Event History
Jan 1, 1970
CVE Published
via MITRE·12:00 AM
May 14, 2024
CVE Published
via NVD·03:39 PM
Aug 15, 2024
Data Sourced
via MITRE·05:25 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2024-34946?
CVE-2024-34946 is classified as a high severity vulnerability due to its potential to allow unauthorized access and exploitation through a stack-based buffer overflow.
2
How do I fix CVE-2024-34946?
To fix CVE-2024-34946, update the firmware of the Tenda FH1206 to the latest version provided by the manufacturer.
3
What type of vulnerability is CVE-2024-34946?
CVE-2024-34946 is a stack-based buffer overflow vulnerability affecting Tenda FH1206 devices.
4
What is impacted by CVE-2024-34946?
CVE-2024-34946 impacts the Tenda FH1206 version 1.2.0.8 and may affect its DhcpListClient functionality.
5
Is CVE-2024-34946 exploitable remotely?
Yes, CVE-2024-34946 can be exploited remotely by sending crafted requests to the vulnerable endpoint.