Filtered by vendor Tenda Subscriptions
Total 741 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2022-43108 1 Tenda 2 Ac23, Ac23 Firmware 2022-11-03 9.8 Critical
Tenda AC23 V16.03.07.45_cn was discovered to contain a stack overflow via the firewallEn parameter in the formSetFirewallCfg function.
CVE-2022-43104 1 Tenda 2 Ac23, Ac23 Firmware 2022-11-03 9.8 Critical
Tenda AC23 V16.03.07.45_cn was discovered to contain a stack overflow via the wpapsk_crypto parameter in the fromSetWirelessRepeat function.
CVE-2022-43103 1 Tenda 2 Ac23, Ac23 Firmware 2022-11-03 9.8 Critical
Tenda AC23 V16.03.07.45_cn was discovered to contain a stack overflow via the list parameter in the formSetQosBand function.
CVE-2022-43102 1 Tenda 2 Ac23, Ac23 Firmware 2022-11-03 9.8 Critical
Tenda AC23 V16.03.07.45_cn was discovered to contain a stack overflow via the timeZone parameter in the fromSetSysTime function.
CVE-2022-43101 1 Tenda 2 Ac23, Ac23 Firmware 2022-11-03 9.8 Critical
Tenda AC23 V16.03.07.45_cn was discovered to contain a stack overflow via the devName parameter in the formSetDeviceName function.
CVE-2022-40876 1 Tenda 2 Ax1803, Ax1803 Firmware 2022-10-31 9.8 Critical
In Tenda ax1803 v1.0.0.1, the http requests handled by the fromAdvSetMacMtuWan functions, wanSpeed, cloneType, mac, can cause a stack overflow and enable remote code execution (RCE).
CVE-2022-40875 1 Tenda 2 Ax1803, Ax1803 Firmware 2022-10-28 7.5 High
Tenda AX1803 v1.0.0.1 was discovered to contain a heap overflow in the function GetParentControlInfo.
CVE-2022-40874 1 Tenda 2 Ax1803, Ax1803 Firmware 2022-10-28 7.5 High
Tenda AX1803 v1.0.0.1 was discovered to contain a heap overflow vulnerability in the GetParentControlInfo function, which can cause a denial of service attack through a carefully constructed http request.
CVE-2022-42233 1 Tenda 2 11n, 11n Firmware 2022-10-24 9.8 Critical
Tenda 11N with firmware version V5.07.33_cn suffers from an Authentication Bypass vulnerability.
CVE-2022-32033 1 Tenda 2 Ax1806, Ax1806 Firmware 2022-10-20 7.5 High
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the function formSetVirtualSer.
CVE-2022-43024 1 Tenda 2 Tx3, Tx3 Firmware 2022-10-20 9.8 Critical
Tenda TX3 US_TX3V1.0br_V16.03.13.11_multi_TDE01 was discovered to contain a stack overflow via the list parameter at /goform/SetVirtualServerCfg.
CVE-2022-43025 1 Tenda 2 Tx3, Tx3 Firmware 2022-10-20 9.8 Critical
Tenda TX3 US_TX3V1.0br_V16.03.13.11_multi_TDE01 was discovered to contain a stack overflow via the startIp parameter at /goform/SetPptpServerCfg.
CVE-2022-43026 1 Tenda 2 Tx3, Tx3 Firmware 2022-10-20 9.8 Critical
Tenda TX3 US_TX3V1.0br_V16.03.13.11_multi_TDE01 was discovered to contain a stack overflow via the endIp parameter at /goform/SetPptpServerCfg.
CVE-2022-43027 1 Tenda 2 Tx3, Tx3 Firmware 2022-10-20 9.8 Critical
Tenda TX3 US_TX3V1.0br_V16.03.13.11_multi_TDE01 was discovered to contain a stack overflow via the firewallEn parameter at /goform/SetFirewallCfg.
CVE-2022-43028 1 Tenda 2 Tx3, Tx3 Firmware 2022-10-20 9.8 Critical
Tenda TX3 US_TX3V1.0br_V16.03.13.11_multi_TDE01 was discovered to contain a stack overflow via the timeZone parameter at /goform/SetSysTimeCfg.
CVE-2022-43029 1 Tenda 2 Tx3, Tx3 Firmware 2022-10-20 9.8 Critical
Tenda TX3 US_TX3V1.0br_V16.03.13.11_multi_TDE01 was discovered to contain a stack overflow via the time parameter at /goform/SetSysTimeCfg.
CVE-2022-43259 1 Tenda 2 Ac15, Ac15 Firmware 2022-10-20 7.5 High
Tenda AC15 V15.03.05.18 was discovered to contain a stack overflow via the timeZone parameter in the form_fast_setting_wifi_set function.
CVE-2022-43260 1 Tenda 2 Ac18, Ac18 Firmware 2022-10-20 9.8 Critical
Tenda AC18 V15.03.05.19(6318) was discovered to contain a stack overflow via the time parameter in the fromSetSysTime function.
CVE-2022-42163 1 Tenda 2 Ac10, Ac10 Firmware 2022-10-19 9.8 Critical
Tenda AC10 V15.03.06.23 contains a Stack overflow vulnerability via /goform/fromNatStaticSetting.
CVE-2022-42164 1 Tenda 2 Ac10, Ac10 Firmware 2022-10-19 9.8 Critical
Tenda AC10 V15.03.06.23 contains a Stack overflow vulnerability via /goform/formSetClientState.