CVE-2024-51311
Deferred Deferred - Pending Action

Stack Overflow in Tenda TX9 V22.03.02.05 Firmware

Vulnerability report for CVE-2024-51311, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-07-20

Last updated on: 2026-07-21

Assigner: MITRE

Description

The Tenda TX9 V22.03.02.05 firmware has a stack overflow vulnerability in the sub_4418CC function of the file /goform/SetNetControlList.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-07-20
Last Modified
2026-07-21
Generated
2026-08-10
AI Q&A
2026-07-21
EPSS Evaluated
2026-08-09
NVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
tenda tx9 v22.03.02.05

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-121 A stack-based buffer overflow condition is a condition where the buffer being overwritten is allocated on the stack (i.e., is a local variable or, rarely, a parameter to a function).

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

The Tenda TX9 V22.03.02.05 firmware contains a stack overflow vulnerability in the sub_4418CC function located in the /goform/SetNetControlList file. This flaw allows an attacker to overflow the stack memory, potentially leading to arbitrary code execution or system crashes.

Detection Guidance

This vulnerability is specific to Tenda TX9 V22.03.02.05 firmware and involves a stack overflow in the /goform/SetNetControlList function. Detection requires checking the firmware version of the device. Use the device's admin interface or SSH to verify the firmware version matches V22.03.02.05. If confirmed, the device is vulnerable.

Impact Analysis

This vulnerability could allow an attacker to gain unauthorized access to your Tenda TX9 router, execute malicious code, or cause the device to malfunction. It may also enable further network compromise if the router is used as a gateway.

Compliance Impact

This vulnerability could potentially lead to unauthorized access or data breaches due to arbitrary code execution or denial-of-service attacks. Such incidents may violate compliance requirements under GDPR (data protection) or HIPAA (health information security) if sensitive data is exposed or systems are disrupted.

Mitigation Strategies

Update the Tenda TX9 V22.03.02.05 firmware to the latest version to address the stack overflow vulnerability in the sub_4418CC function.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2024-51311. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart