VendorsTendafh1201all versions
Vulnerabilities

Tenda FH1201

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

25CVEs
CVE-2024-42947
An issue in the handler function in /goform/telnet of Tenda FH1201 v1.2.0.14 (408) allows attackers to execute arbitrary commands via a crafted HTTP request.
Published 2024-08-15 · Modified
9.8EPSS 0.010
CVE-2025-6110
Tenda FH1201 SafeMacFilter stack-based overflow
Published 2025-06-16 · Analyzed
9.0EPSS 0.055
CVE-2025-7551
Tenda FH1201 PPTPDClient fromPptpUserAdd stack-based overflow
Published 2025-07-13 · Analyzed
9.0EPSS 0.011
CVE-2025-7463
Tenda FH1201 HTTP POST Request AdvSetWrlsafeset formWrlsafeset buffer overflow
Published 2025-07-12 · Analyzed
9.0EPSS 0.011
CVE-2025-7550
Tenda FH1201 GstDhcpSetSer fromGstDhcpSetSer stack-based overflow
Published 2025-07-13 · Analyzed
9.0EPSS 0.008
CVE-2025-7549
Tenda FH1201 L7Prot frmL7ProtForm stack-based overflow
Published 2025-07-13 · Analyzed
9.0EPSS 0.008
CVE-2025-7548
Tenda FH1201 SafeEmailFilter formSafeEmailFilter stack-based overflow
Published 2025-07-13 · Analyzed
9.0EPSS 0.008
CVE-2025-7468
Tenda FH1201 HTTP POST Request fromSafeUrlFilter buffer overflow
Published 2025-07-12 · Analyzed
9.0EPSS 0.008
CVE-2025-7465
Tenda FH1201 HTTP POST Request fromRouteStatic buffer overflow
Published 2025-07-12 · Analyzed
9.0EPSS 0.008
CVE-2025-14994
Tenda FH1201/FH1206 HTTP Request webtypelibrary strcat stack-based overflow
Published 2025-12-21 · Analyzed
9.0EPSS 0.007
CVE-2025-14995
Tenda FH1201 SetIpBind sprintf stack-based overflow
Published 2025-12-21 · Analyzed
9.0EPSS 0.007
CVE-2026-5045
Tenda FH1201 Parameter WrlclientSet stack-based overflow
Published 2026-03-29 · Analyzed
9.0EPSS 0.007
CVE-2026-5046
Tenda FH1201 Parameter WrlExtraSet formWrlExtraSet stack-based overflow
Published 2026-03-29 · Analyzed
9.0EPSS 0.006
CVE-2024-44859
Tenda FH1201 v1.2.0.14 has a stack buffer overflow vulnerability in `formWrlExtraGet`.
Published 2024-09-04 · Analyzed
8.0EPSS 0.006
CVE-2024-42948
Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the delno parameter in the fromPptpUserSetting function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.
Published 2024-08-15 · Modified
7.5EPSS 0.106
CVE-2024-42946
Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the page parameter in the fromVirtualSer function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.
Published 2024-08-15 · Modified
7.5EPSS 0.007
CVE-2024-42944
Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the page parameter in the fromNatlimit function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.
Published 2024-08-15 · Modified
7.5EPSS 0.007
CVE-2024-42943
Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the PPPOEPassword parameter in the fromAdvSetWan function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.
Published 2024-08-15 · Modified
7.5EPSS 0.007
CVE-2024-42941
Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the wanmode parameter in the fromAdvSetWan function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.
Published 2024-08-15 · Modified
7.5EPSS 0.007
CVE-2024-42940
Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the page parameter in the fromP2pListFilter function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.
Published 2024-08-15 · Modified
7.5EPSS 0.007
CVE-2024-42952
Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the page parameter in the fromqossetting function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.
Published 2024-08-15 · Modified
7.5EPSS 0.006
CVE-2024-42955
Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the page parameter in the fromSafeClientFilter function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.
Published 2024-08-15 · Modified
7.5EPSS 0.006
CVE-2024-42951
Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the mit_pptpusrpw parameter in the fromWizardHandle function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.
Published 2024-08-15 · Modified
7.5EPSS 0.006
CVE-2024-42950
Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the Go parameter in the fromSafeClientFilter function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.
Published 2024-08-15 · Modified
7.5EPSS 0.006
CVE-2024-12002
Tenda FH451/FH1201/FH1202/FH1206 GetIPTV websReadEvent null pointer dereference
Published 2024-11-30 · Analyzed
6.5EPSS 0.008