Vulnerabilities (CVE)

Filtered by vendor Tenda Subscribe
Total 532 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-50989 1 Tenda 2 I29, I29 Firmware 2024-02-05 N/A 9.8 CRITICAL
Tenda i29 v1.0 V1.0.0.5 was discovered to contain a command injection vulnerability via the pingSet function.
CVE-2023-45484 1 Tenda 2 Ac10, Ac10 Firmware 2024-02-05 N/A 9.8 CRITICAL
Tenda AC10 version US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via the shareSpeed parameter in the function fromSetWifiGuestBasic.
CVE-2023-51092 1 Tenda 2 M3, M3 Firmware 2024-02-05 N/A 9.8 CRITICAL
Tenda M3 V1.0.0.12(4856) was discovered to contain a stack overflow via the function upgrade.
CVE-2023-49411 1 Tenda 2 W30e, W30e Firmware 2024-02-05 N/A 9.8 CRITICAL
Tenda W30E V16.01.0.12(4843) contains a stack overflow vulnerability via the function formDeleteMeshNode.
CVE-2023-49429 1 Tenda 2 Ax9, Ax9 Firmware 2024-02-05 N/A 9.8 CRITICAL
Tenda AX9 V22.03.01.46 was discovered to contain a SQL command injection vulnerability in the 'setDeviceInfo' feature through the 'mac' parameter at /goform/setModules.
CVE-2022-45781 1 Tenda 2 Ax1803, Ax1803 Firmware 2024-02-05 N/A 8.8 HIGH
Buffer Overflow vulnerability in Tenda AX1803 v1.0.0.1_2994 and earlier allows attackers to run arbitrary code via /goform/SetOnlineDevName.
CVE-2023-51102 1 Tenda 2 W9, W9 Firmware 2024-02-05 N/A 9.8 CRITICAL
Tenda W9 V1.0.0.7(4456)_CN was discovered to contain a stack overflow via the function formWifiMacFilterSet.
CVE-2023-49403 1 Tenda 2 W30e, W30e Firmware 2024-02-05 N/A 9.8 CRITICAL
Tenda W30E V16.01.0.12(4843) was discovered to contain a command injection vulnerability via the function setFixTools.
CVE-2023-49405 1 Tenda 2 W30e, W30e Firmware 2024-02-05 N/A 9.8 CRITICAL
Tenda W30E V16.01.0.12(4843) was discovered to contain a stack overflow via the function UploadCfg.
CVE-2023-49404 1 Tenda 2 W30e, W30e Firmware 2024-02-05 N/A 9.8 CRITICAL
Tenda W30E V16.01.0.12(4843) was discovered to contain a stack overflow via the function formAdvancedSetListSet.
CVE-2023-50983 1 Tenda 2 I29, I29 Firmware 2024-02-05 N/A 9.8 CRITICAL
Tenda i29 v1.0 V1.0.0.5 was discovered to contain a command injection vulnerability via the sysScheduleRebootSet function.
CVE-2023-38823 1 Tenda 8 Ac18, Ac18 Firmware, Ac19 and 5 more 2024-02-05 N/A 9.8 CRITICAL
Buffer Overflow vulnerability in Tenda Ac19 v.1.0, AC18, AC9 v.1.0, AC6 v.2.0 and v.1.0 allows a remote attacker to execute arbitrary code via the formSetCfm function in bin/httpd.
CVE-2023-45482 1 Tenda 2 Ac10, Ac10 Firmware 2024-02-05 N/A 9.8 CRITICAL
Tenda AC10 version US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via the urls parameter in the function get_parentControl_list_Info.
CVE-2023-50985 1 Tenda 2 I29, I29 Firmware 2024-02-05 N/A 9.8 CRITICAL
Tenda i29 v1.0 V1.0.0.5 was discovered to contain a buffer overflow via the lanGw parameter in the lanCfgSet function.
CVE-2023-49046 1 Tenda 2 Ax1803, Ax1803 Firmware 2024-02-05 N/A 9.8 CRITICAL
Stack Overflow vulnerability in Tenda AX1803 v.1.0.0.1 allows a remote attacker to execute arbitrary code via the devName parameter in the function formAddMacfilterRule.
CVE-2023-50992 1 Tenda 2 I29, I29 Firmware 2024-02-05 N/A 9.8 CRITICAL
Tenda i29 v1.0 V1.0.0.5 was discovered to contain a stack overflow via the ip parameter in the setPing function.
CVE-2023-51100 1 Tenda 2 W9, W9 Firmware 2024-02-05 N/A 9.8 CRITICAL
Tenda W9 V1.0.0.7(4456)_CN was discovered to contain a command injection vulnerability via the function formGetDiagnoseInfo .
CVE-2023-49432 1 Tenda 2 Ax9, Ax9 Firmware 2024-02-05 N/A 9.8 CRITICAL
Tenda AX9 V22.03.01.46 has been found to contain a stack overflow vulnerability in the 'deviceList' parameter at /goform/setMacFilterCfg.
CVE-2023-48111 1 Tenda 2 Ax1803, Ax1803 Firmware 2024-02-05 N/A 7.5 HIGH
Tenda AX1803 v1.0.0.1 was discovered to contain a stack overflow via the time parameter in the function saveParentControlInfo . This vulnerability allows attackers to cause a Denial of Service (DoS) attack
CVE-2023-49044 1 Tenda 2 Ax1803, Ax1803 Firmware 2024-02-05 N/A 9.8 CRITICAL
Stack Overflow vulnerability in Tenda AX1803 v.1.0.0.1 allows a remote attacker to execute arbitrary code via the ssid parameter in the function form_fast_setting_wifi_set.