CVE-2024-42986: High severity tenda fh1206 firmware vulnerability
Tenda FH1206 v02.03.01.35 was discovered to contain a stack overflow via the PPPOEPassword parameter in the fromAdvSetWan function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-42986?
CVE-2024-42986 is rated as a critical vulnerability due to its potential to cause a Denial of Service (DoS) on the affected device.
How do I fix CVE-2024-42986?
To fix CVE-2024-42986, update the Tenda FH1206 firmware to the latest version that addresses this vulnerability.
What type of attack does CVE-2024-42986 facilitate?
CVE-2024-42986 facilitates a Denial of Service attack through a crafted POST request targeting the PPPOEPassword parameter.
Which device is affected by CVE-2024-42986?
CVE-2024-42986 affects the Tenda FH1206 firmware version v02.03.01.35.
How does CVE-2024-42986 exploit the system?
CVE-2024-42986 exploits the system by triggering a stack overflow in the fromAdvSetWan function via malformed user input.