Description
A vulnerability was detected in Tenda FH1202 1.2.0.14(408). The affected element is the function formWebTypeLibrary of the file /goform/webtypelibrary. Performing a manipulation of the argument webSiteId results in stack-based buffer overflow. The attack may be initiated remotely. The exploit is now public and may be used.
Problem types
Product status
Timeline
| 2026-03-08: | Advisory disclosed |
| 2026-03-08: | VulDB entry created |
| 2026-03-08: | VulDB entry last update |
Credits
Manner814 (VulDB User)
References
vuldb.com/?id.349774 (VDB-349774 | Tenda FH1202 webtypelibrary formWebTypeLibrary stack-based overflow)
vuldb.com/?ctiid.349774 (VDB-349774 | CTI Indicators (IOB, IOC, IOA))
vuldb.com/?submit.769023 (Submit #769023 | Tenda FH1202 V1.2.0.14(408) Buffer Overflow)
github.com/...h1202-webtypelibrary-websiteid-buffer-overflow
www.tenda.com.cn/