Vulnerabilities > Tenda

DATE CVE VULNERABILITY TITLE RISK
2023-03-13 CVE-2023-27064 Classic Buffer Overflow vulnerability in Tenda W15E Firmware 15.11.0.14
Tenda V15V1.0 V15.11.0.14(1521_3190_1058) was discovered to contain a buffer overflow vulnerability via the index parameter in the formDelDnsForward function.
network
low complexity
tenda CWE-120
7.5
2023-03-13 CVE-2023-27065 Classic Buffer Overflow vulnerability in Tenda W15E Firmware 15.11.0.14
Tenda V15V1.0 V15.11.0.14(1521_3190_1058) was discovered to contain a buffer overflow vulnerability via the picName parameter in the formDelWewifiPi function.
network
low complexity
tenda CWE-120
7.5
2023-02-27 CVE-2023-25231 Out-of-bounds Write vulnerability in Tenda W30E Firmware V1.0.1.25(633)
Tenda Router W30E V1.0.1.25(633) is vulnerable to Buffer Overflow in function fromRouteStatic via parameters entrys and mitInterface.
network
low complexity
tenda CWE-787
critical
9.8
2023-02-27 CVE-2023-25233 Out-of-bounds Write vulnerability in Tenda Ac500 Firmware 2.0.1.9(1307)
Tenda AC500 V2.0.1.9(1307) is vulnerable to Buffer Overflow in function fromRouteStatic via parameters entrys and mitInterface.
network
low complexity
tenda CWE-787
critical
9.8
2023-02-27 CVE-2023-25234 Out-of-bounds Write vulnerability in Tenda Ac500 Firmware 2.0.1.9(1307)
Tenda AC500 V2.0.1.9(1307) is vulnerable to Buffer Overflow in function fromAddressNat via parameters entrys and mitInterface.
network
low complexity
tenda CWE-787
critical
9.8
2023-02-27 CVE-2023-25235 Out-of-bounds Write vulnerability in Tenda Ac500 Firmware 2.0.1.9(1307)
Tenda AC500 V2.0.1.9(1307) is vulnerable to Buffer Overflow in function formOneSsidCfgSet via parameter ssid.
network
low complexity
tenda CWE-787
7.5
2023-02-27 CVE-2023-23080 Command Injection vulnerability in Tenda products
Certain Tenda products are vulnerable to command injection.
network
low complexity
tenda CWE-77
critical
9.8
2023-02-23 CVE-2023-24212 Out-of-bounds Write vulnerability in Tenda AX3 Firmware 16.03.12.11
Tenda AX3 V16.03.12.11 was discovered to contain a stack overflow via the timeType function at /goform/SetSysTimeCfg.
network
low complexity
tenda CWE-787
critical
9.8
2023-02-11 CVE-2023-0782 Unspecified vulnerability in Tenda Ac23 Firmware 16.03.07.45
A vulnerability was found in Tenda AC23 16.03.07.45 and classified as critical.
network
low complexity
tenda
critical
9.8
2023-02-02 CVE-2022-48130 Out-of-bounds Write vulnerability in Tenda W20E Firmware 15.11.0.6
Tenda W20E v15.11.0.6 was discovered to contain multiple stack overflows in the function formSetStaticRoute via the parameters staticRouteNet, staticRouteMask, staticRouteGateway, staticRouteWAN.
network
low complexity
tenda CWE-787
critical
9.8