Description
A vulnerability was identified in Tenda F1202 1.2.0.20(408). This affects the function fromPptpUserAdd of the file /goform/PptpUserAdd. The manipulation of the argument opttype leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit is publicly available and might be used.
Problem types
Product status
Timeline
| 2026-05-24: | Advisory disclosed |
| 2026-05-24: | VulDB entry created |
| 2026-05-24: | VulDB entry last update |
Credits
LtzHuster2 (VulDB User)
References
vuldb.com/vuln/365412 (VDB-365412 | Tenda F1202 PptpUserAdd fromPptpUserAdd stack-based overflow)
vuldb.com/vuln/365412/cti (VDB-365412 | CTI Indicators (IOB, IOC, IOA))
vuldb.com/submit/813916 (Submit #813916 | Tenda F1202 V1.2.0.20(408) Stack-based Buffer Overflow)
github.com/...ng/vuldb_new2/blob/main/F1202/vul_35/README.md
www.tenda.com.cn/