Vulnerabilities > Tenda > High

DATE CVE VULNERABILITY TITLE RISK
2022-11-21 CVE-2022-44156 Out-of-bounds Write vulnerability in Tenda Ac15 Firmware 15.03.05.19
Tenda AC15 V15.03.05.19 is vulnerable to Buffer Overflow via function formSetIpMacBind.
network
low complexity
tenda CWE-787
7.5
2022-11-21 CVE-2022-44158 Out-of-bounds Write vulnerability in Tenda Ac21 Firmware 16.03.08.15
Tenda AC21 V16.03.08.15 is vulnerable to Buffer Overflow via function via set_device_name.
network
low complexity
tenda CWE-787
7.5
2022-11-21 CVE-2022-44163 Out-of-bounds Write vulnerability in Tenda Ac21 Firmware 16.03.08.15
Tenda AC21 V16.03.08.15 is vulnerable to Buffer Overflow via function formSetMacFilterCfg.
network
low complexity
tenda CWE-787
7.5
2022-11-21 CVE-2022-44167 Out-of-bounds Write vulnerability in Tenda Ac15 Firmware 15.03.05.18
Tenda AC15 V15.03.05.18 is avulnerable to Buffer Overflow via function formSetPPTPServer.
network
low complexity
tenda CWE-787
7.5
2022-11-21 CVE-2022-44168 Out-of-bounds Write vulnerability in Tenda Ac15 Firmware 15.03.05.18
Tenda AC15 V15.03.05.18 is vulnerable to Buffer Overflow via function fromSetRouteStatic..
network
low complexity
tenda CWE-787
7.5
2022-11-21 CVE-2022-44169 Out-of-bounds Write vulnerability in Tenda Ac15 Firmware 15.03.05.18
Tenda AC15 V15.03.05.18 is vulnerable to Buffer Overflow via function formSetVirtualSer.
network
low complexity
tenda CWE-787
7.5
2022-11-15 CVE-2022-41395 OS Command Injection vulnerability in Tenda W15E Firmware 15.11.0.10(1576)
Tenda AC1200 Router Model W15Ev2 V15.11.0.10(1576) was discovered to contain a command injection vulnerability via the dmzHost parameter in the setDMZ function.
local
low complexity
tenda CWE-78
7.8
2022-11-15 CVE-2022-41396 OS Command Injection vulnerability in Tenda W15E Firmware 15.11.0.10(1576)
Tenda AC1200 Router Model W15Ev2 V15.11.0.10(1576) was discovered to contain multiple command injection vulnerabilities in the function setIPsecTunnelList via the IPsecLocalNet and IPsecRemoteNet parameters.
local
low complexity
tenda CWE-78
7.8
2022-11-15 CVE-2022-42053 OS Command Injection vulnerability in Tenda W15E Firmware 15.11.0.10(1576)
Tenda AC1200 Router Model W15Ev2 V15.11.0.10(1576) was discovered to contain a command injection vulnerability via the PortMappingServer parameter in the setPortMapping function.
local
low complexity
tenda CWE-78
7.8
2022-11-15 CVE-2022-42060 Out-of-bounds Write vulnerability in Tenda W15E Firmware 15.11.0.10(1576)
Tenda AC1200 Router Model W15Ev2 V15.11.0.10(1576) was discovered to contain a stack overflow via the setWanPpoe function.
network
low complexity
tenda CWE-787
7.5