Vulnerabilities > Tenda > Ax1803 Firmware > High

DATE CVE VULNERABILITY TITLE RISK
2023-11-27 CVE-2023-49047 Out-of-bounds Write vulnerability in Tenda Ax1803 Firmware 1.0.0.1
Tenda AX1803 v1.0.0.1 contains a stack overflow via the devName parameter in the function formSetDeviceName.
network
low complexity
tenda CWE-787
7.5
2023-11-20 CVE-2023-48109 Out-of-bounds Write vulnerability in Tenda Ax1803 Firmware 1.0.0.1
Tenda AX1803 v1.0.0.1 was discovered to contain a heap overflow via the deviceId parameter in the function saveParentControlInfo .
network
low complexity
tenda CWE-787
7.5
2023-11-20 CVE-2023-48110 Out-of-bounds Write vulnerability in Tenda Ax1803 Firmware 1.0.0.1
Tenda AX1803 v1.0.0.1 was discovered to contain a heap overflow via the urls parameter in the function saveParentControlInfo .
network
low complexity
tenda CWE-787
7.5
2023-11-20 CVE-2023-48111 Out-of-bounds Write vulnerability in Tenda Ax1803 Firmware 1.0.0.1
Tenda AX1803 v1.0.0.1 was discovered to contain a stack overflow via the time parameter in the function saveParentControlInfo .
network
low complexity
tenda CWE-787
7.5
2023-11-14 CVE-2022-45781 Out-of-bounds Write vulnerability in Tenda Ax1803 Firmware 1.0.0.1/1.0.0.12890/1.0.0.12994
Buffer Overflow vulnerability in Tenda AX1803 v1.0.0.1_2994 and earlier allows attackers to run arbitrary code via /goform/SetOnlineDevName.
network
low complexity
tenda CWE-787
8.8
2022-10-27 CVE-2022-40874 Out-of-bounds Write vulnerability in Tenda Ax1803 Firmware 1.0.0.1
Tenda AX1803 v1.0.0.1 was discovered to contain a heap overflow vulnerability in the GetParentControlInfo function, which can cause a denial of service attack through a carefully constructed http request.
network
low complexity
tenda CWE-787
7.5
2022-10-27 CVE-2022-40875 Out-of-bounds Write vulnerability in Tenda Ax1803 Firmware 1.0.0.1
Tenda AX1803 v1.0.0.1 was discovered to contain a heap overflow in the function GetParentControlInfo.
network
low complexity
tenda CWE-787
7.5
2022-08-25 CVE-2022-37817 Out-of-bounds Write vulnerability in Tenda Ax1803 Firmware 1.0.0.1
Tenda AX1803 v1.0.0.1 was discovered to contain a stack overflow via the function fromSetIpMacBind.
local
low complexity
tenda CWE-787
7.8
2022-08-25 CVE-2022-37818 Out-of-bounds Write vulnerability in Tenda Ax1803 Firmware 1.0.0.1
Tenda AX1803 v1.0.0.1 was discovered to contain a stack overflow via the list parameter at the function formSetQosBand.
local
low complexity
tenda CWE-787
7.8
2022-08-25 CVE-2022-37819 Out-of-bounds Write vulnerability in Tenda Ax1803 Firmware 1.0.0.1
Tenda AX1803 v1.0.0.1 was discovered to contain a stack overflow via the timezone parameter in the function fromSetSysTime.
local
low complexity
tenda CWE-787
7.8