Vulnerabilities > Tenda

DATE CVE VULNERABILITY TITLE RISK
2022-09-07 CVE-2022-36587 Classic Buffer Overflow vulnerability in Tenda G3 Firmware 15.11.0.6(7663)
In Tenda G3 US_G3V3.0br_V15.11.0.6(7663)_EN_TDE, there is a buffer overflow vulnerability caused by sprintf in function in the httpd binary.
network
low complexity
tenda CWE-120
critical
9.8
2022-09-06 CVE-2022-36584 Classic Buffer Overflow vulnerability in Tenda G3 Firmware 15.11.0.6(7663)
In Tenda G3 US_G3V3.0br_V15.11.0.6(7663)_EN_TDE, the getsinglepppuser function has a buffer overflow caused by sscanf.
network
low complexity
tenda CWE-120
critical
9.8
2022-08-31 CVE-2022-36568 Out-of-bounds Write vulnerability in Tenda AC9 Firmware 15.03.05.19
Tenda AC9 V15.03.05.19 was discovered to contain a stack overflow via the list parameter at /goform/setPptpUserList.
network
low complexity
tenda CWE-787
8.8
2022-08-31 CVE-2022-36569 Out-of-bounds Write vulnerability in Tenda AC9 Firmware 15.03.05.19
Tenda AC9 V15.03.05.19 was discovered to contain a stack overflow via the deviceList parameter at /goform/setMacFilterCfg.
network
low complexity
tenda CWE-787
8.8
2022-08-31 CVE-2022-36570 Out-of-bounds Write vulnerability in Tenda AC9 Firmware 15.03.05.19
Tenda AC9 V15.03.05.19 was discovered to contain a stack overflow via the time parameter at /goform/SetLEDCfg.
network
low complexity
tenda CWE-787
7.2
2022-08-31 CVE-2022-36571 Out-of-bounds Write vulnerability in Tenda AC9 Firmware 15.03.05.19
Tenda AC9 V15.03.05.19 was discovered to contain a stack overflow via the mask parameter at /goform/WanParameterSetting.
network
low complexity
tenda CWE-787
7.2
2022-08-29 CVE-2022-38510 Classic Buffer Overflow vulnerability in Tenda TX9 PRO Firmware 22.03.02.10
Tenda_TX9pro V22.03.02.10 was discovered to contain a buffer overflow via the component httpd/SetNetControlList.
local
low complexity
tenda CWE-120
7.8
2022-08-28 CVE-2022-38562 Out-of-bounds Write vulnerability in Tenda M3 Firmware 1.0.0.12(4856)
Tenda M3 V1.0.0.12(4856) was discovered to contain a heap buffer overflow vulnerability in the function formSetFixTools.
network
low complexity
tenda CWE-787
7.5
2022-08-28 CVE-2022-38563 Out-of-bounds Write vulnerability in Tenda M3 Firmware 1.0.0.12(4856)
Tenda M3 V1.0.0.12(4856) was discovered to contain a heap buffer overflow vulnerability in the function formSetFixTools.
network
low complexity
tenda CWE-787
7.5
2022-08-28 CVE-2022-38564 Out-of-bounds Write vulnerability in Tenda M3 Firmware 1.0.0.12(4856)
Tenda M3 V1.0.0.12(4856) was discovered to contain a buffer overflow vulnerability in the function formSetPicListItem.
network
low complexity
tenda CWE-787
7.5