Vulnerabilities > Tenda > W6 Firmware > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-01-29 CVE-2024-0995 Out-of-bounds Write vulnerability in Tenda W6 Firmware 1.0.0.9(4122)
A vulnerability was found in Tenda W6 1.0.0.9(4122).
network
low complexity
tenda CWE-787
critical
9.8
2024-01-29 CVE-2024-0994 Out-of-bounds Write vulnerability in Tenda W6 Firmware 1.0.0.9(4122)
A vulnerability was found in Tenda W6 1.0.0.9(4122).
network
low complexity
tenda CWE-787
critical
9.8
2022-08-12 CVE-2022-35559 Out-of-bounds Write vulnerability in Tenda W6 Firmware 1.0.0.9(4122)
A stack overflow vulnerability exists in /goform/setAutoPing in Tenda W6 V1.0.0.9(4122), which allows an attacker to construct ping1 parameters and ping2 parameters for a stack overflow attack.
network
low complexity
tenda CWE-787
critical
9.8
2022-08-12 CVE-2022-35555 OS Command Injection vulnerability in Tenda W6 Firmware 1.0.0.9(4122)
A command injection vulnerability exists in /goform/exeCommand in Tenda W6 V1.0.0.9(4122), which allows attackers to construct cmdinput parameters for arbitrary command execution.
network
low complexity
tenda CWE-78
critical
9.8