Tenda
Tenda Fh1202 Firmware: vulnerabilidades y CVE
Tenda Fh1202 Firmware tiene 63 vulnerabilidades publicadas, 7 de ellas en los últimos 12 meses. 19 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE63
Últimos 12 meses7
Críticas19
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-7035 | Alta (7.4) | 1.0% | — | 26 abr 2026 | A vulnerability was determined in Tenda FH1202 1.2.0.14. This affects the function fromWrlclientSet of the file /goform/WrlclientSet of the component httpd. Executing a manipulation of the argument Go can lead to… |
| CVE-2026-7034 | Alta (7.4) | 1.0% | — | 26 abr 2026 | A vulnerability was found in Tenda FH1202 1.2.0.14(408). Affected by this issue is the function WrlExtraSet of the file /goform/WrlExtraSet of the component httpd. Performing a manipulation of the argument Go results in… |
| CVE-2026-3811 | Alta (7.4) | 1.0% | — | 9 mar 2026 | A vulnerability was found in Tenda FH1202 1.2.0.14(408). This impacts the function fromP2pListFilter of the file /goform/P2pListFilter. The manipulation of the argument page results in stack-based buffer overflow. The… |
| CVE-2026-3810 | Alta (7.4) | 1.0% | — | 9 mar 2026 | A vulnerability has been found in Tenda FH1202 1.2.0.14(408). This affects the function fromDhcpListClient of the file /goform/DhcpListClient. The manipulation of the argument page leads to stack-based buffer overflow.… |
| CVE-2026-3809 | Alta (7.4) | 1.0% | — | 9 mar 2026 | A flaw has been found in Tenda FH1202 1.2.0.14(408). The impacted element is the function fromNatStaticSetting of the file /goform/NatSaticSetting. Executing a manipulation of the argument page can lead to stack-based… |
| CVE-2026-3808 | Alta (7.4) | 1.0% | — | 9 mar 2026 | A vulnerability was detected in Tenda FH1202 1.2.0.14(408). The affected element is the function formWebTypeLibrary of the file /goform/webtypelibrary. Performing a manipulation of the argument webSiteId results in… |
| CVE-2026-3807 | Alta (7.4) | 1.0% | — | 9 mar 2026 | A security vulnerability has been detected in Tenda FH1202 1.2.0.14(408). Impacted is the function formWrlsafeset of the file /goform/AdvSetWrlsafeset. Such manipulation of the argument mit_ssid/mit_ssid_index leads to… |
| CVE-2025-7532 | Alta (7.4) | 1.2% | — | 13 jul 2025 | A vulnerability has been found in Tenda FH1202 1.2.0.14(408) and classified as critical. This vulnerability affects the function fromwebExcptypemanFilter of the file /goform/webExcptypemanFilter. The manipulation of the… |
| CVE-2025-7531 | Alta (7.4) | 1.1% | — | 13 jul 2025 | A vulnerability, which was classified as critical, was found in Tenda FH1202 1.2.0.14(408). This affects the function fromPptpUserSetting of the file /goform/PPTPUserSetting. The manipulation of the argument delno leads… |
| CVE-2025-7530 | Alta (7.4) | 0.89% | — | 13 jul 2025 | A vulnerability, which was classified as critical, has been found in Tenda FH1202 1.2.0.14(408). Affected by this issue is the function fromPptpUserAdd of the file /goform/PPTPDClient. The manipulation of the argument… |
| CVE-2025-7529 | Alta (7.4) | 0.89% | — | 13 jul 2025 | A vulnerability classified as critical was found in Tenda FH1202 1.2.0.14(408). Affected by this vulnerability is the function fromNatlimit of the file /goform/Natlimit. The manipulation of the argument page leads to… |
| CVE-2025-7528 | Alta (7.4) | 0.89% | — | 13 jul 2025 | A vulnerability classified as critical has been found in Tenda FH1202 1.2.0.14(408). Affected is the function fromGstDhcpSetSer of the file /goform/GstDhcpSetSer. The manipulation of the argument dips leads to… |
| CVE-2025-7527 | Alta (7.4) | 0.89% | — | 13 jul 2025 | A vulnerability was found in Tenda FH1202 1.2.0.14(408). It has been rated as critical. This issue affects the function fromAdvSetWan of the file /goform/AdvSetWan. The manipulation of the argument PPPOEPassword leads… |
| CVE-2025-5978 | Alta (7.4) | 1.0% | — | 10 jun 2025 | A vulnerability was found in Tenda FH1202 1.2.0.14. It has been classified as critical. Affected is the function fromVirtualSer of the file /goform/VirtualSer. The manipulation of the argument page leads to stack-based… |
| CVE-2025-3237 | Media (6.9) | 0.62% | — | 4 abr 2025 | A vulnerability was found in Tenda FH1202 1.2.0.14(408). It has been rated as critical. This issue affects some unknown processing of the file /goform/wrlwpsset. The manipulation leads to improper access controls. The… |
| CVE-2025-3236 | Media (6.9) | 0.67% | — | 4 abr 2025 | A vulnerability was found in Tenda FH1202 1.2.0.14(408). It has been declared as critical. This vulnerability affects unknown code of the file /goform/VirSerDMZ of the component Web Management Interface. The… |
| CVE-2025-2996 | Media (6.9) | 0.81% | — | 31 mar 2025 | A vulnerability was found in Tenda FH1202 1.2.0.14(408) and classified as critical. This issue affects some unknown processing of the file /goform/SysToolDDNS of the component Web Management Interface. The manipulation… |
| CVE-2025-2995 | Media (6.9) | 0.83% | — | 31 mar 2025 | A vulnerability has been found in Tenda FH1202 1.2.0.14(408) and classified as critical. This vulnerability affects unknown code of the file /goform/SysToolChangePwd of the component Web Management Interface. The… |
| CVE-2025-2994 | Media (6.9) | 0.65% | — | 31 mar 2025 | A vulnerability, which was classified as critical, was found in Tenda FH1202 1.2.0.14(408). This affects an unknown part of the file /goform/qossetting of the component Web Management Interface. The manipulation leads… |
| CVE-2025-2993 | Media (6.9) | 11% | — | 31 mar 2025 | A vulnerability, which was classified as critical, has been found in Tenda FH1202 1.2.0.14(408). Affected by this issue is some unknown functionality of the file /default.cfg. The manipulation of the argument these… |
| CVE-2025-2992 | Media (6.9) | 0.66% | — | 31 mar 2025 | A vulnerability classified as critical was found in Tenda FH1202 1.2.0.14(408). Affected by this vulnerability is an unknown functionality of the file /goform/AdvSetWrlsafeset of the component Web Management Interface.… |
| CVE-2025-2991 | Media (6.9) | 0.64% | — | 31 mar 2025 | A vulnerability classified as critical has been found in Tenda FH1202 1.2.0.14(408). Affected is an unknown function of the file /goform/AdvSetWrlmacfilter of the component Web Management Interface. The manipulation… |
| CVE-2025-2990 | Media (6.9) | 0.65% | — | 31 mar 2025 | A vulnerability was found in Tenda FH1202 1.2.0.14(408). It has been rated as critical. This issue affects some unknown processing of the file /goform/AdvSetWrlGstset of the component Web Management Interface. The… |
| CVE-2025-2989 | Media (6.9) | 0.65% | — | 31 mar 2025 | A vulnerability was found in Tenda FH1202 1.2.0.14(408). It has been declared as critical. This vulnerability affects unknown code of the file /goform/AdvSetWrl of the component Web Management Interface. The… |
| CVE-2024-12002 | Media (5.3) | 0.80% | — | 30 nov 2024 | A vulnerability classified as problematic was found in Tenda FH451, FH1201, FH1202 and FH1206 up to 20241129. Affected by this vulnerability is the function websReadEvent of the file /goform/GetIPTV. The manipulation of… |
| CVE-2024-32315 | Media (4.7) | 0.39% | — | 17 abr 2024 | Tenda FH1202 v1.2.0.14(408) firmware has a stack overflow vulnerability via the adslPwd parameter in the formWanParameterSetting function. |
| CVE-2024-32302 | Media (6.3) | 0.38% | — | 17 abr 2024 | Tenda FH1202 v1.2.0.14(408) firmware has a stack overflow vulnerability via the PPW parameter in the fromWizardHandle function. |
| CVE-2024-32282 | Media (6.3) | 0.81% | — | 17 abr 2024 | Tenda FH1202 v1.2.0.14(408) firmware contains a command injection vulnerablility in the formexeCommand function via the cmdinput parameter. |
| CVE-2024-30592 | Alta (8) | 0.69% | — | 28 mar 2024 | Tenda FH1202 v1.2.0.14(408) has a stack overflow vulnerability in the page parameter of the fromAddressNat function. |
| CVE-2024-30591 | Alta (8.8) | 0.69% | — | 28 mar 2024 | Tenda FH1202 v1.2.0.14(408) has a stack overflow vulnerability in the time parameter of the saveParentControlInfo function. |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.