Vulnerabilities > Tenda

DATE CVE VULNERABILITY TITLE RISK
2023-07-10 CVE-2023-37707 Out-of-bounds Write vulnerability in Tenda Fh1203 Firmware 2.0.1.6
Tenda FH1203 V2.0.1.6 was discovered to contain a stack overflow via the page parameter in the fromVirtualSer function.
network
low complexity
tenda CWE-787
critical
9.8
2023-07-10 CVE-2023-37710 Out-of-bounds Write vulnerability in Tenda Ac10 Firmware and Ac1206 Firmware
Tenda AC1206 V15.03.06.23 and AC10 V15.03.06.47 were discovered to contain a stack overflow in the wpapsk_crypto parameter in the fromSetWirelessRepeat function.
network
low complexity
tenda CWE-787
critical
9.8
2023-07-10 CVE-2023-37711 Out-of-bounds Write vulnerability in Tenda Ac10 Firmware and Ac1206 Firmware
Tenda AC1206 V15.03.06.23 and AC10 V15.03.06.47 were discovered to contain a stack overflow in the deviceId parameter in the saveParentControlInfo function.
network
low complexity
tenda CWE-787
critical
9.8
2023-07-10 CVE-2023-37712 Out-of-bounds Write vulnerability in Tenda Ac1206 Firmware, F1202 Firmware and Fh1202 Firmware
Tenda AC1206 V15.03.06.23, F1202 V1.2.0.20(408), and FH1202 V1.2.0.20(408) were discovered to contain a stack overflow in the page parameter in the fromSetIpBind function.
network
low complexity
tenda CWE-787
critical
9.8
2023-06-26 CVE-2022-40010 Cross-site Scripting vulnerability in Tenda AC6 Firmware 15.03.06.50Multi
Tenda AC6 AC1200 Smart Dual-Band WiFi Router 15.03.06.50_multi was discovered to contain a cross-site scripting (XSS) vulnerability via the deviceId parameter in the Parental Control module.
network
low complexity
tenda CWE-79
5.4
2023-06-08 CVE-2023-34566 Out-of-bounds Write vulnerability in Tenda Ac10 Firmware Usac10V4.0Siv16.03.10.13Cn
Tenda AC10 v4 US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via parameter time at /goform/saveParentControlInfo.
network
low complexity
tenda CWE-787
critical
9.8
2023-06-08 CVE-2023-34567 Out-of-bounds Write vulnerability in Tenda Ac10 Firmware Usac10V4.0Siv16.03.10.13Cn
Tenda AC10 v4 US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via parameter list at /goform/SetVirtualServerCfg.
local
low complexity
tenda CWE-787
6.7
2023-06-08 CVE-2023-34568 Out-of-bounds Write vulnerability in Tenda Ac10 Firmware Usac10V4.0Siv16.03.10.13Cn
Tenda AC10 v4 US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via parameter time at /goform/PowerSaveSet.
local
low complexity
tenda CWE-787
6.7
2023-06-08 CVE-2023-34569 Out-of-bounds Write vulnerability in Tenda Ac10 Firmware Usac10V4.0Siv16.03.10.13Cn
Tenda AC10 v4 US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via parameter list at /goform/SetNetControlList.
local
low complexity
tenda CWE-787
6.7
2023-06-08 CVE-2023-34570 Out-of-bounds Write vulnerability in Tenda Ac10 Firmware Usac10V4.0Siv16.03.10.13Cn
Tenda AC10 v4 US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via parameter devName at /goform/SetOnlineDevName.
local
low complexity
tenda CWE-787
6.7