Author: Angelo Barbosa

CVE-2024-30590 | Tenda FH1202 1.2.0.14(408) /goform/openSchedWifi setSchedWifi schedEndTime stack-based overflow

A vulnerability was found in Tenda FH1202 1.2.0.14(408). It has been classified as critical. This affects the function setSchedWifi of the file /goform/openSchedWifi. The manipulation of the argument schedEndTime leads to stack-based buffer overflow. This vulnerability is uniquely identified as CVE-2024-30590. It is possible to initiate the attack remotely. Furthermore, there is an exploit...

Read More

CVE-2024-30589 | Tenda FH1202 1.2.0.14(408) /goform/addressNat fromAddressNat entrys stack-based overflow

A vulnerability was found in Tenda FH1202 1.2.0.14(408) and classified as critical. Affected by this issue is the function fromAddressNat of the file /goform/addressNat. The manipulation of the argument entrys leads to stack-based buffer overflow. This vulnerability is handled as CVE-2024-30589. The attack may be launched remotely. Furthermore, there is an exploit...

Read More

CVE-2024-30588 | Tenda FH1202 1.2.0.14(408) /goform/openSchedWifi setSchedWifi schedStartTime stack-based overflow

A vulnerability has been found in Tenda FH1202 1.2.0.14(408) and classified as critical. Affected by this vulnerability is the function setSchedWifi of the file /goform/openSchedWifi. The manipulation of the argument schedStartTime leads to stack-based buffer overflow. This vulnerability is known as CVE-2024-30588. The attack can be launched remotely. Furthermore, there is an exploit...

Read More

CVE-2024-30587 | Tenda FH1202 1.2.0.14(408) saveParentControlInfo urls stack-based overflow

A vulnerability, which was classified as critical, was found in Tenda FH1202 1.2.0.14(408). Affected is the function saveParentControlInfo of the file /goform/saveParentControlInfo. The manipulation of the argument urls leads to stack-based buffer overflow. This vulnerability is traded as CVE-2024-30587. It is possible to launch the attack remotely. Furthermore, there is an exploit...

Read More

CVE-2024-29898 | miraheze CreateWiki Incomplete Fix CVE-2024-29897 information disclosure

A vulnerability, which was classified as problematic, has been found in miraheze CreateWiki. This issue affects some unknown processing of the component Incomplete Fix CVE-2024-29897. The manipulation leads to information disclosure. The identification of this vulnerability is CVE-2024-29898. The attack may be initiated remotely. There is no exploit available. It is recommended to upgrade the affected...

Read More