CVE-2024-51409

Buffer Overflow vulnerability in Tenda O3 v.1.0.0.5 allows a remote attacker to cause a denial of service via a network packet in a fixed format to a router running the corresponding version of the firmware.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:tenda:o3_firmware:1.0.0.5:*:*:*:*:*:*:*
cpe:2.3:h:tenda:o3:-:*:*:*:*:*:*:*

History

11 Apr 2025, 15:04

Type Values Removed Values Added
First Time Tenda
Tenda o3 Firmware
Tenda o3
CPE cpe:2.3:o:tenda:o3_firmware:1.0.0.5:*:*:*:*:*:*:*
cpe:2.3:h:tenda:o3:-:*:*:*:*:*:*:*
References () https://github.com/fireknight-hJ/Tenda-cve-pocs/blob/main/Tenda%20O3V1.0.0.5%284180%29/websReadEvent.md - () https://github.com/fireknight-hJ/Tenda-cve-pocs/blob/main/Tenda%20O3V1.0.0.5%284180%29/websReadEvent.md - Exploit, Third Party Advisory

07 Nov 2024, 16:35

Type Values Removed Values Added
Summary
  • (es) La vulnerabilidad de desbordamiento de búfer en Tenda O3 v.1.0.0.5 permite a un atacante remoto provocar una denegación de servicio a través de un paquete de red en un formato fijo a un enrutador que ejecuta la versión correspondiente del firmware.
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.5
CWE CWE-120

06 Nov 2024, 23:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-11-06 23:15

Updated : 2025-04-11 15:04


NVD link : CVE-2024-51409

Mitre link : CVE-2024-51409

CVE.ORG link : CVE-2024-51409


JSON object : View

Products Affected

tenda

  • o3
  • o3_firmware
CWE
CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')