Vulnerabilities > Tenda

DATE CVE VULNERABILITY TITLE RISK
2023-07-10 CVE-2023-37712 Out-of-bounds Write vulnerability in Tenda Ac1206 Firmware, F1202 Firmware and Fh1202 Firmware
Tenda AC1206 V15.03.06.23, F1202 V1.2.0.20(408), and FH1202 V1.2.0.20(408) were discovered to contain a stack overflow in the page parameter in the fromSetIpBind function.
network
low complexity
tenda CWE-787
critical
9.8
2023-06-26 CVE-2022-40010 Cross-site Scripting vulnerability in Tenda AC6 Firmware 15.03.06.50Multi
Tenda AC6 AC1200 Smart Dual-Band WiFi Router 15.03.06.50_multi was discovered to contain a cross-site scripting (XSS) vulnerability via the deviceId parameter in the Parental Control module.
network
low complexity
tenda CWE-79
5.4
2023-06-08 CVE-2023-34566 Out-of-bounds Write vulnerability in Tenda Ac10 Firmware Usac10V4.0Siv16.03.10.13Cn
Tenda AC10 v4 US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via parameter time at /goform/saveParentControlInfo.
network
low complexity
tenda CWE-787
critical
9.8
2023-06-08 CVE-2023-34567 Out-of-bounds Write vulnerability in Tenda Ac10 Firmware Usac10V4.0Siv16.03.10.13Cn
Tenda AC10 v4 US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via parameter list at /goform/SetVirtualServerCfg.
local
low complexity
tenda CWE-787
6.7
2023-06-08 CVE-2023-34568 Out-of-bounds Write vulnerability in Tenda Ac10 Firmware Usac10V4.0Siv16.03.10.13Cn
Tenda AC10 v4 US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via parameter time at /goform/PowerSaveSet.
local
low complexity
tenda CWE-787
6.7
2023-06-08 CVE-2023-34569 Out-of-bounds Write vulnerability in Tenda Ac10 Firmware Usac10V4.0Siv16.03.10.13Cn
Tenda AC10 v4 US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via parameter list at /goform/SetNetControlList.
local
low complexity
tenda CWE-787
6.7
2023-06-08 CVE-2023-34570 Out-of-bounds Write vulnerability in Tenda Ac10 Firmware Usac10V4.0Siv16.03.10.13Cn
Tenda AC10 v4 US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via parameter devName at /goform/SetOnlineDevName.
local
low complexity
tenda CWE-787
6.7
2023-06-08 CVE-2023-34571 Out-of-bounds Write vulnerability in Tenda Ac10 Firmware Usac10V4.0Siv16.03.10.13Cn
Tenda AC10 v4 US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via parameter shareSpeed at /goform/WifiGuestSet.
local
low complexity
tenda CWE-787
6.7
2023-06-06 CVE-2023-33530 Command Injection vulnerability in Tenda G103 Firmware 1.0.0.5
There is a command injection vulnerability in the Tenda G103 Gigabit GPON Terminal with firmware version V1.0.0.5.
network
low complexity
tenda CWE-77
8.8
2023-06-02 CVE-2023-33669 Out-of-bounds Write vulnerability in Tenda AC8 Firmware 16.03.34.06
Tenda AC8V4.0-V16.03.34.06 was discovered to contain a stack overflow via the timeZone parameter in the sub_44db3c function.
network
low complexity
tenda CWE-787
critical
9.8