Security Advisory

CVE-2024-12002

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-11-30 13:00:14
Last updated 2024-12-02 15:54:21
Assigner VulDB
State PUBLISHED

Description

A vulnerability classified as problematic was found in Tenda FH451, FH1201, FH1202 and FH1206 up to 20241129. Affected by this vulnerability is the function websReadEvent of the file /goform/GetIPTV. The manipulation of the argument Content-Length leads to null pointer dereference. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.