VYPR
Unrated severityNVD Advisory· Published Nov 30, 2024· Updated Dec 2, 2024

Tenda FH451/FH1201/FH1202/FH1206 GetIPTV websReadEvent null pointer dereference

CVE-2024-12002

Description

A vulnerability classified as problematic was found in Tenda FH451, FH1201, FH1202 and FH1206 up to 20241129. Affected by this vulnerability is the function websReadEvent of the file /goform/GetIPTV. The manipulation of the argument Content-Length leads to null pointer dereference. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

6
  • Tenda/FH1202llm-fuzzy4 versions
    <= 20241129+ 3 more
    • (no CPE)range: <= 20241129
    • (no CPE)range: 20241129
    • (no CPE)range: 20241129
    • (no CPE)range: 20241129
  • Tenda/FH451llm-fuzzy2 versions
    <= 20241129+ 1 more
    • (no CPE)range: <= 20241129
    • (no CPE)range: 20241129

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.