📦 Fh1206 Firmware

by Tenda

🔍 What is Fh1206 Firmware?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-42978

CRITICAL CVSS 9.8 Aug 15, 2024

This vulnerability allows remote attackers to execute arbitrary commands on Tenda FH1206 routers via a crafted HTTP request to the /goform/telnet endpoint. Attackers can gain full control of affected ...

CVE-2024-35339

CRITICAL CVSS 9.8 May 24, 2024

This CVE describes a command injection vulnerability in Tenda FH1206 routers that allows remote attackers to execute arbitrary commands on the device. Attackers can exploit this by sending specially c...

CVE-2024-34943

CRITICAL CVSS 9.8 May 14, 2024

CVE-2024-34943 is a critical stack-based buffer overflow vulnerability in Tenda FH1206 routers that allows remote attackers to execute arbitrary code by sending specially crafted requests to the ip/go...

CVE-2024-34945

CRITICAL CVSS 9.8 May 14, 2024

A stack-based buffer overflow vulnerability in Tenda FH1206 routers allows remote attackers to execute arbitrary code by sending specially crafted requests to the PPW parameter. This affects all users...

CVE-2024-33215

CRITICAL CVSS 9.8 Apr 23, 2024

This CVE describes a critical stack-based buffer overflow vulnerability in Tenda FH1206 routers. Attackers can exploit this vulnerability by sending specially crafted requests to the mitInterface para...

CVE-2025-14994

HIGH CVSS 8.8 Dec 21, 2025

A stack-based buffer overflow vulnerability in Tenda FH1201 and FH1206 routers allows remote attackers to execute arbitrary code by manipulating the webSiteId parameter in HTTP requests. This affects ...

CVE-2024-44390

HIGH CVSS 8.8 Aug 23, 2024

This buffer overflow vulnerability in Tenda FH1206 routers allows attackers to execute arbitrary code by sending specially crafted requests to the formWrlsafeset function. It affects all users running...

CVE-2024-44386

HIGH CVSS 7.3 Aug 23, 2024

A buffer overflow vulnerability in Tenda FH1206 routers allows attackers to execute arbitrary code by sending specially crafted requests to the fromSetIpBind function. This affects users running vulne...

CVE-2024-42980

HIGH CVSS 7.5 Aug 15, 2024

This CVE describes a stack overflow vulnerability in Tenda FH1206 routers that allows attackers to cause Denial of Service (DoS) through specially crafted POST requests. The vulnerability affects user...

CVE-2024-42982

HIGH CVSS 7.5 Aug 15, 2024

This vulnerability in Tenda FH1206 routers allows attackers to cause a Denial of Service (DoS) by sending a specially crafted POST request that triggers a stack overflow. The vulnerability affects Ten...

CVE-2024-42984

HIGH CVSS 7.5 Aug 15, 2024

Tenda FH1206 routers running firmware v02.03.01.35 contain a stack overflow vulnerability in the fromP2pListFilter function via the page parameter. Attackers can exploit this by sending a crafted POST...

CVE-2024-42986

HIGH CVSS 7.5 Aug 15, 2024

This vulnerability in Tenda FH1206 routers allows attackers to cause a Denial of Service (DoS) by sending a specially crafted POST request that triggers a stack overflow in the PPPOEPassword parameter...

CVE-2024-42968

HIGH CVSS 7.5 Aug 15, 2024

This vulnerability in Tenda FH1206 routers allows attackers to trigger a stack overflow via the Go parameter in the fromSafeUrlFilter function through crafted POST requests. This can cause Denial of S...

CVE-2024-42973

HIGH CVSS 7.5 Aug 15, 2024

This vulnerability in Tenda FH1206 routers allows attackers to trigger a stack overflow via a crafted POST request to the fromSetlpBind function, causing Denial of Service (DoS). Attackers can crash t...

CVE-2024-42976

HIGH CVSS 7.5 Aug 15, 2024

Tenda FH1206 routers running firmware v02.03.01.35 contain a stack overflow vulnerability in the fromSafeClientFilter function's page parameter. Attackers can exploit this via crafted POST requests to...

CVE-2024-7707

HIGH CVSS 8.8 Aug 13, 2024

This critical vulnerability in Tenda FH1206 routers allows remote attackers to execute arbitrary code via a stack-based buffer overflow in the formSafeEmailFilter function. Attackers can exploit this ...

CVE-2024-7614

HIGH CVSS 8.8 Aug 12, 2024

This critical vulnerability in Tenda FH1206 routers allows remote attackers to execute arbitrary code via a stack-based buffer overflow in the QoS configuration function. Attackers can exploit this wi...

CVE-2024-33211

HIGH CVSS 7.3 Apr 23, 2024

CVE-2024-33211 is a stack-based buffer overflow vulnerability in Tenda FH1206 routers that allows remote attackers to execute arbitrary code by sending specially crafted requests to the PPPOEPassword ...

CVE-2024-33214

HIGH CVSS 7.5 Apr 23, 2024

This vulnerability allows remote attackers to execute arbitrary code on Tenda FH1206 routers by exploiting a stack-based buffer overflow in the RouteStatic form handler. Attackers can send specially c...

CVE-2024-4020

HIGH CVSS 8.8 Apr 20, 2024

A critical buffer overflow vulnerability in Tenda FH1206 routers allows remote attackers to execute arbitrary code by manipulating the 'entrys' parameter in the fromAddressNat function. This affects T...

CVE-2024-12002

MEDIUM CVSS 4.3 Nov 30, 2024

This vulnerability in Tenda FH series routers allows remote attackers to cause a denial-of-service (DoS) by sending specially crafted requests to the /goform/GetIPTV endpoint. The null pointer derefer...