CVE-2024-40412

Tenda AX12 v1.0 v22.03.01.46 contains a stack overflow in the deviceList parameter of the sub_42E410 function.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:tenda:ax12_firmware:22.03.01.46:*:*:*:*:*:*:*
cpe:2.3:h:tenda:ax12:1.0:*:*:*:*:*:*:*

History

07 Jul 2025, 16:20

Type Values Removed Values Added
References () https://github.com/Feng-ZZ-pwn/IOT/blob/main/Tenda%20AX12/1/README.md - () https://github.com/Feng-ZZ-pwn/IOT/blob/main/Tenda%20AX12/1/README.md - Broken Link
References () https://static.tenda.com.cn/tdcweb/download/uploadfile/AX12/V22.03.01.46.zip - () https://static.tenda.com.cn/tdcweb/download/uploadfile/AX12/V22.03.01.46.zip - Product
First Time Tenda ax12 Firmware
Tenda
Tenda ax12
CPE cpe:2.3:o:tenda:ax12_firmware:22.03.01.46:*:*:*:*:*:*:*
cpe:2.3:h:tenda:ax12:1.0:*:*:*:*:*:*:*

21 Nov 2024, 09:31

Type Values Removed Values Added
References () https://github.com/Feng-ZZ-pwn/IOT/blob/main/Tenda%20AX12/1/README.md - () https://github.com/Feng-ZZ-pwn/IOT/blob/main/Tenda%20AX12/1/README.md -
References () https://static.tenda.com.cn/tdcweb/download/uploadfile/AX12/V22.03.01.46.zip - () https://static.tenda.com.cn/tdcweb/download/uploadfile/AX12/V22.03.01.46.zip -

01 Aug 2024, 13:57

Type Values Removed Values Added
CWE CWE-121
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.8

15 Jul 2024, 17:15

Type Values Removed Values Added
References
  • () https://github.com/Feng-ZZ-pwn/IOT/blob/main/Tenda%20AX12/1/README.md -

11 Jul 2024, 13:05

Type Values Removed Values Added
Summary
  • (es) Tenda AX12 v1.0 v22.03.01.46 contiene un desbordamiento de pila en el parámetro deviceList de la función sub_42E410.

10 Jul 2024, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-07-10 16:15

Updated : 2025-07-07 16:20


NVD link : CVE-2024-40412

Mitre link : CVE-2024-40412

CVE.ORG link : CVE-2024-40412


JSON object : View

Products Affected

tenda

  • ax12
  • ax12_firmware
CWE
CWE-121

Stack-based Buffer Overflow