Fh1205 Firmware Tenda Fh1205 Firmware

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Tenda Fh1205 Firmware.

By the Year

In 2026 there have been 0 vulnerabilities in Tenda Fh1205 Firmware. Last year, in 2025 Fh1205 Firmware had 3 security vulnerabilities published. Right now, Fh1205 Firmware is on track to have less security vulnerabilities in 2026 than it did last year.

Year Vulnerabilities Average Score
2026 0 0.00
2025 3 8.80
2024 21 8.93

It may take a day or so for new Fh1205 Firmware vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Tenda Fh1205 Firmware Security Vulnerabilities

Tenda FH1205 2.0.0.7 stack overflow via wpapsk_crypto
CVE-2025-7596 8.8 - High - July 14, 2025

A vulnerability was found in Tenda FH1205 2.0.0.7(775). It has been rated as critical. This issue affects the function formWifiExtraSet of the file /goform/WifiExtraSet. The manipulation of the argument wpapsk_crypto leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.

Memory Corruption

Tenda FH1205 2.0.0.7 Remote Buffer Overflow in AdvSetLanip
CVE-2025-6112 8.8 - High - June 16, 2025

A vulnerability, which was classified as critical, has been found in Tenda FH1205 2.0.0.7. This issue affects the function fromadvsetlanip of the file /goform/AdvSetLanip. The manipulation of the argument lanMask leads to buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.

Classic Buffer Overflow

Tenda FH1205 2.0.0.7 Buffer Overflow in VirtualSer (Critical)
CVE-2025-6111 8.8 - High - June 16, 2025

A vulnerability classified as critical was found in Tenda FH1205 2.0.0.7(775). This vulnerability affects the function fromVirtualSer of the file /goform/VirtualSer. The manipulation of the argument page leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

Memory Corruption

Tenda FH1205 V2.0.0.7 Stack Overflw via PPW param (fromWizardHandle)
CVE-2024-32307 - April 17, 2024

Tenda FH1205 V2.0.0.7(775) firmware has a stack overflow vulnerability located via the PPW parameter in the fromWizardHandle function.

Stack Overflow in Tenda FH1205 V2.0.0.7 via adslPwd param
CVE-2024-32313 - April 17, 2024

Tenda FH1205 V2.0.0.7(775) firmware has a stack overflow vulnerability located via the adslPwd parameter of the formWanParameterSetting function.

Stack Overflow in Tenda FH1205 v2.0.0.7(775) fromAddressNat
CVE-2024-30628 9.8 - Critical - March 29, 2024

Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the page parameter from fromAddressNat function.

MitInterface Stack Overflow Vulnerability in Tenda FH1205 v2.0.0.7
CVE-2024-30622 - March 29, 2024

Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the mitInterface parameter from fromAddressNat function.

Stack overflow in Tenda FH1205 v2.0.0.7 (fromDhcpListClient)
CVE-2024-30623 - March 29, 2024

Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the page parameter from fromDhcpListClient function.

Tenda FH1205 v2.0.0.7(775) Stack Overflow in urls Parameter
CVE-2024-30624 - March 29, 2024

Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the urls parameter from saveParentControlInfo function.

Tenda FH1205 v2.0.0.7: Stack Overflow via entrys in fromAddressNat
CVE-2024-30625 - March 29, 2024

Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the entrys parameter from fromAddressNat function.

Tenda FH1205 v2.0.0.7 Stack Overflow via setSchedWifi(schedEndTime)
CVE-2024-30626 - March 29, 2024

Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the schedEndTime parameter from setSchedWifi function.

Stack Overflow via deviceId in Tenda FH1205 v2.0.0.7
CVE-2024-30627 - March 29, 2024

Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the deviceId parameter from saveParentControlInfo function.

Stack Overflow in list1 Parameter of fromDhcpListClient in Tenda FH1205 v2.0.0.7
CVE-2024-30629 - March 29, 2024

Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the list1 parameter from fromDhcpListClient function.

Tenda FH1205 v2.0.0.7(775) Stack Overflow in saveParentControlInfo
CVE-2024-30630 - March 29, 2024

Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the time parameter from saveParentControlInfo function.

Tenda FH1205 v2.0.0.7 stack overflow in schedStartTime (setSchedWifi)
CVE-2024-30631 - March 29, 2024

Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the schedStartTime parameter from setSchedWifi function.

Stack Overflow in Tenda FH1205 v2.0.0.7(775) security_5g param
CVE-2024-30632 - March 29, 2024

Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the security_5g parameter from formWifiBasicSet function.

Tenda FH1205 v2.0.0.7 Stack Overflow in formWifiBasicSet
CVE-2024-30633 - March 29, 2024

Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the security parameter from the formWifiBasicSet function.

Tenda FH1205 2.0.0.7 Stack Bof via /goform/GetParentControlInfo
CVE-2024-3012 8.8 - High - March 28, 2024

A vulnerability was found in Tenda FH1205 2.0.0.7(775). It has been declared as critical. This vulnerability affects the function GetParentControlInfo of the file /goform/GetParentControlInfo. The manipulation of the argument mac leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-258298 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

Memory Corruption

Tenda FH1205 2.0.0.7 Command Injection in /goform/WriteFacMac
CVE-2024-3009 8.8 - High - March 28, 2024

A vulnerability has been found in Tenda FH1205 2.0.0.7(775) and classified as critical. Affected by this vulnerability is the function formWriteFacMac of the file /goform/WriteFacMac. The manipulation of the argument mac leads to command injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-258295. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

Command Injection

Tenda FH1205 2.0.0.7 Remote Stack Buffer Overflow CVE-2024-3010
CVE-2024-3010 8.8 - High - March 28, 2024

A vulnerability was found in Tenda FH1205 2.0.0.7(775) and classified as critical. Affected by this issue is the function formSetCfm of the file /goform/setcfm. The manipulation of the argument funcpara1 leads to stack-based buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-258296. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

Memory Corruption

Tenda FH1205 2.0.0.7 Remote Stack Buffer Overflow via PPPOEPassword
CVE-2024-3011 8.8 - High - March 28, 2024

A vulnerability was found in Tenda FH1205 2.0.0.7(775). It has been classified as critical. This affects the function formQuickIndex of the file /goform/QuickIndex. The manipulation of the argument PPPOEPassword leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-258297 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

Memory Corruption

Tenda FH1205 v2.0.0.7 stack buffer overflow in fromSetRouteStatic
CVE-2024-3006 8.8 - High - March 27, 2024

A vulnerability classified as critical was found in Tenda FH1205 2.0.0.7(775). This vulnerability affects the function fromSetRouteStatic of the file /goform/fromRouteStatic. The manipulation of the argument entrys leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-258292. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

Memory Corruption

Tenda FH1205 2.0.0.7: stack-based BOF in NatStaticSetting (critical)
CVE-2024-3007 8.8 - High - March 27, 2024

A vulnerability, which was classified as critical, has been found in Tenda FH1205 2.0.0.7(775). This issue affects the function fromNatStaticSetting of the file /goform/NatStaticSetting. The manipulation of the argument page leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-258293 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

Memory Corruption

Tenda FH1205 2.0.0.7 Remote Stack Buffer Overflow via formexeCommand
CVE-2024-3008 8.8 - High - March 27, 2024

A vulnerability, which was classified as critical, was found in Tenda FH1205 2.0.0.7(775). Affected is the function formexeCommand of the file /goform/execCommand. The manipulation of the argument cmdinput leads to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-258294 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

Memory Corruption

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Tenda Fh1205 Firmware or by Tenda? Click the Watch button to subscribe.

Tenda
Vendor

subscribe