CVE-2024-4114
Tenda
CVE-2024-4114: A critical stack-based buffer overflow vulnerability exists in Tenda TX9 router firmware. This flaw allows remote attackers to execute arbitrary code by manipulating the 'time' argument in the '/goform/PowerSaveSet' endpoint. While the CVSS score is 8.8 indicating high severity, the SOCRadar Vulnerability Risk Score (SVRS) is 78, suggesting this is a serious vulnerability that needs attention. An SVRS score of 78 indicates that, while serious, it is just below the threshold of needing immediate remediation. Successful exploitation could lead to complete system compromise, including data theft and device control. Given that the exploit is public, organizations using affected Tenda TX9 devices should apply mitigations or updates immediately, if they become available. The vendor has not responded to disclosure attempts, increasing the risk for users. This emphasizes the importance of proactive cybersecurity monitoring.
Indicators of Compromise
Exploits
News
Social Media
Affected Software
References
CWE Details
CVE Radar
Real-time CVE Intelligence & Vulnerability Management Platform
CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.