First published: Thu Aug 15 2024(Updated: )
Tenda FH1206 v02.03.01.35 was discovered to contain a stack overflow via the PPPOEPassword parameter in the fromAdvSetWan function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Tenda FH1206 Firmware | =v02.03.1.35 | |
Tenda Fh1206 Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-42986 is rated as a critical vulnerability due to its potential to cause a Denial of Service (DoS) on the affected device.
To fix CVE-2024-42986, update the Tenda FH1206 firmware to the latest version that addresses this vulnerability.
CVE-2024-42986 facilitates a Denial of Service attack through a crafted POST request targeting the PPPOEPassword parameter.
CVE-2024-42986 affects the Tenda FH1206 firmware version v02.03.01.35.
CVE-2024-42986 exploits the system by triggering a stack overflow in the fromAdvSetWan function via malformed user input.