Vulnerabilities (CVE)

Filtered by vendor Tenda Subscribe
Total 802 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-37712 1 Tenda 6 Ac1206, Ac1206 Firmware, F1202 and 3 more 2024-02-28 N/A 9.8 CRITICAL
Tenda AC1206 V15.03.06.23, F1202 V1.2.0.20(408), and FH1202 V1.2.0.20(408) were discovered to contain a stack overflow in the page parameter in the fromSetIpBind function.
CVE-2023-25213 1 Tenda 2 Ac5, Ac5 Firmware 2024-02-28 N/A 9.8 CRITICAL
Tenda AC5 US_AC5V1.0RTL_V15.03.06.28 was discovered to contain a stack overflow via the check_param_changed function. This vulnerability allows attackers to cause a Denial of Service (DoS) or execute arbitrary code via a crafted payload.
CVE-2023-29680 1 Tenda 2 N301, N301 Firmware 2024-02-28 N/A 5.7 MEDIUM
Cleartext Transmission in set-cookie:ecos_pw: Tenda N301 v6.0, Firmware v12.02.01.61_multi allows an authenticated attacker on the LAN or WLAN to intercept communications with the router and obtain the password.
CVE-2023-37703 1 Tenda 2 Fh1203, Fh1203 Firmware 2024-02-28 N/A 9.8 CRITICAL
Tenda FH1203 V2.0.1.6 was discovered to contain a stack overflow via the speed_dir parameter in the formSetSpeedWan function.
CVE-2023-25216 1 Tenda 2 Ac5, Ac5 Firmware 2024-02-28 N/A 9.8 CRITICAL
Tenda AC5 US_AC5V1.0RTL_V15.03.06.28 was discovered to contain a stack overflow via the formSetFirewallCfg function. This vulnerability allows attackers to cause a Denial of Service (DoS) or execute arbitrary code via a crafted payload.
CVE-2023-30356 1 Tenda 2 Cp3, Cp3 Firmware 2024-02-28 N/A 7.5 HIGH
Missing Support for an Integrity Check in Shenzen Tenda Technology IP Camera CP3 V11.10.00.2211041355 allows attackers to update the device with crafted firmware
CVE-2023-37700 1 Tenda 2 Fh1203, Fh1203 Firmware 2024-02-28 N/A 9.8 CRITICAL
Tenda FH1203 V2.0.1.6 was discovered to contain a stack overflow via the ssid parameter in the form_fast_setting_wifi_set function.
CVE-2023-27016 1 Tenda 2 Ac10, Ac10 Firmware 2024-02-28 N/A 9.8 CRITICAL
Tenda AC10 US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via the R7WebsSecurityHandler function. This vulnerability allows attackers to cause a Denial of Service (DoS) or execute arbitrary code via a crafted payload.
CVE-2023-30378 1 Tenda 2 Ac15, Ac15 Firmware 2024-02-28 N/A 9.8 CRITICAL
In Tenda AC15 V15.03.05.19, the function "sub_8EE8" contains a stack-based buffer overflow vulnerability.
CVE-2023-33669 1 Tenda 2 Ac8, Ac8 Firmware 2024-02-28 N/A 9.8 CRITICAL
Tenda AC8V4.0-V16.03.34.06 was discovered to contain a stack overflow via the timeZone parameter in the sub_44db3c function.
CVE-2023-25211 1 Tenda 2 Ac5, Ac5 Firmware 2024-02-28 N/A 9.8 CRITICAL
Tenda AC5 US_AC5V1.0RTL_V15.03.06.28 was discovered to contain a stack overflow via the R7WebsSecurityHandler function. This vulnerability allows attackers to cause a Denial of Service (DoS) or execute arbitrary code via a crafted payload.
CVE-2023-30354 1 Tenda 2 Cp3, Cp3 Firmware 2024-02-28 N/A 9.8 CRITICAL
Shenzen Tenda Technology IP Camera CP3 V11.10.00.2211041355 does not defend against physical access to U-Boot via the UART: the Wi-Fi password is shown, and the hardcoded boot password can be inserted for console access.
CVE-2023-30371 1 Tenda 2 Ac15, Ac15 Firmware 2024-02-28 N/A 9.8 CRITICAL
In Tenda AC15 V15.03.05.19, the function "sub_ED14" contains a stack-based buffer overflow vulnerability.
CVE-2023-29681 1 Tenda 2 N301, N301 Firmware 2024-02-28 N/A 5.7 MEDIUM
Cleartext Transmission in cookie:ecos_pw: in Tenda N301 v6.0, firmware v12.03.01.06_pt allows an authenticated attacker on the LAN or WLAN to intercept communications with the router and obtain the password.
CVE-2022-45337 1 Tenda 2 Tx9 Pro, Tx9 Pro Firmware 2024-02-28 N/A 7.5 HIGH
Tenda TX9 Pro v22.03.02.10 was discovered to contain a stack overflow via the list parameter at /goform/SetIpMacBind.
CVE-2022-47115 1 Tenda 2 A15, A15 Firmware 2024-02-28 N/A 9.8 CRITICAL
Tenda A15 V15.13.07.13 was discovered to contain a stack overflow via the wepauth parameter at /goform/WifiBasicSet.
CVE-2022-45641 1 Tenda 2 Ac6, Ac6 Firmware 2024-02-28 N/A 7.5 HIGH
Tenda AC6V1.0 V15.03.05.19 is vulnerable to Buffer Overflow via formSetMacFilterCfg.
CVE-2022-44932 1 Tenda 2 A18, A18 Firmware 2024-02-28 N/A 7.5 HIGH
An access control issue in Tenda A18 v15.13.07.09 allows unauthenticated attackers to access the Telnet service.
CVE-2022-45507 1 Tenda 2 W30e, W30e Firmware 2024-02-28 N/A 7.5 HIGH
Tenda W30E V1.0.1.25(633) was discovered to contain a stack overflow via the editNameMit parameter at /goform/editFileName.
CVE-2022-46109 1 Tenda 2 Ac10, Ac10 Firmware 2024-02-28 N/A 7.5 HIGH
Tenda AC15 V15.03.06.23 is vulnerable to Buffer Overflow via function formSetClientState.