Stack-based buffer overflow vulnerability in Tenda AC18 V15.03.3.10_EN allows a remote attacker to execute arbitrary code via the ssid parameter at ip/goform/fast_setting_wifi_set.
References
| Link | Resource |
|---|---|
| https://palm-vertebra-fe9.notion.site/form_fast_setting_wifi_set-fd47294cf4bb460bb95f804d39e53f34 | Exploit Third Party Advisory |
| https://www.tendacn.com/hk/download/detail-3852.html | Broken Link |
| https://www.tendacn.com/hk/download/detail-3863.html | Broken Link |
Configurations
Configuration 1 (hide)
| AND |
|
History
07 Apr 2025, 17:13
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:h:tenda:ac18:-:*:*:*:*:*:*:* cpe:2.3:o:tenda:ac18_firmware:15.03.3.10_en:*:*:*:*:*:*:* |
|
| First Time |
Tenda ac18
Tenda Tenda ac18 Firmware |
|
| References | () https://palm-vertebra-fe9.notion.site/form_fast_setting_wifi_set-fd47294cf4bb460bb95f804d39e53f34 - Exploit, Third Party Advisory | |
| References | () https://www.tendacn.com/hk/download/detail-3852.html - Broken Link | |
| References | () https://www.tendacn.com/hk/download/detail-3863.html - Broken Link |
21 Aug 2024, 21:35
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | CWE-121 | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.6 |
01 Aug 2024, 12:42
| Type | Values Removed | Values Added |
|---|---|---|
| Summary |
|
31 Jul 2024, 19:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2024-07-31 19:15
Updated : 2025-04-07 17:13
NVD link : CVE-2024-41630
Mitre link : CVE-2024-41630
CVE.ORG link : CVE-2024-41630
JSON object : View
Products Affected
tenda
- ac18
- ac18_firmware
CWE
CWE-121
Stack-based Buffer Overflow
