Tenda FH1205 AdvSetLanip fromadvsetlanip buffer overflow

CVE Details

Basic Information

Title Tenda FH1205 AdvSetLanip fromadvsetlanip buffer overflow
Type cve
Published 2025-06-16T07:31:06.853Z
Last Seen

Product Information

Vendor Tenda
Product FH1205
Version 2.0.0.7

CVSS Information

Base Score 8.7 (HIGH)
Attack Vector CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:P
Confidentiality Impact
Integrity Impact
Availability Impact

AI Analysis

AI Description A critical vulnerability in Tenda FH1205 2.0.0.7 allows remote attackers to execute arbitrary code via a buffer overflow in the fromadvsetlanip function of the /goform/AdvSetLanip file, specifically through the lanMask argument. The exploit is publicly available and can be used to compromise the system.
AI Severity High
Vendor Tenda
Product FH1205
Affected Version 2.0.0.7

Affected Products

  • Tenda FH1205 2.0.0.7

Additional Information

CVE List
CWE List CWE-120, CWE-119
Bulletin Family

Description

A vulnerability, which was classified as critical, has been found in Tenda FH1205 2.0.0.7. This issue affects the function fromadvsetlanip of the file /goform/AdvSetLanip. The manipulation of the argument lanMask leads to buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.