Vulnerabilities > Tendacn

DATE CVE VULNERABILITY TITLE RISK
2022-12-02 CVE-2022-45661 Classic Buffer Overflow vulnerability in Tendacn AC6 Firmware 15.03.05.19
Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the time parameter in the setSmartPowerManagement function.
network
low complexity
tendacn CWE-120
7.5
2022-09-23 CVE-2022-40853 Out-of-bounds Write vulnerability in Tendacn Ac15 Firmware 15.03.05.19
Tenda AC15 router V15.03.05.19 contains a stack overflow via the list parameter at /goform/fast_setting_wifi_set
network
low complexity
tendacn CWE-787
critical
9.8
2022-09-23 CVE-2022-40860 Out-of-bounds Write vulnerability in Tendacn Ac15 Firmware 15.03.05.19
Tenda AC15 router V15.03.05.19 contains a stack overflow vulnerability in the function formSetQosBand->FUN_0007dd20 with request /goform/SetNetControlList
network
low complexity
tendacn CWE-787
critical
9.8
2022-09-23 CVE-2022-40862 Out-of-bounds Write vulnerability in Tendacn Ac15 Firmware and Ac18 Firmware
Tenda AC15 and AC18 router V15.03.05.19 contains stack overflow vulnerability in the function fromNatStaticSetting with the request /goform/NatStaticSetting
network
low complexity
tendacn CWE-787
critical
9.8
2022-09-23 CVE-2022-40864 Out-of-bounds Write vulnerability in Tendacn Ac15 Firmware and Ac18 Firmware
Tenda AC15 and AC18 routers V15.03.05.19 contain stack overflow vulnerabilities in the function setSmartPowerManagement with the request /goform/PowerSaveSet
network
low complexity
tendacn CWE-787
critical
9.8
2022-09-23 CVE-2022-40865 Out-of-bounds Write vulnerability in Tendacn Ac15 Firmware and Ac18 Firmware
Tenda AC15 and AC18 routers V15.03.05.19 contain heap overflow vulnerabilities in the function setSchedWifi with the request /goform/openSchedWifi/
network
low complexity
tendacn CWE-787
critical
9.8
2022-09-23 CVE-2022-40869 Out-of-bounds Write vulnerability in Tendacn Ac15 Firmware and Ac18 Firmware
Tenda AC15 and AC18 routers V15.03.05.19 contain stack overflow vulnerabilities in the function fromDhcpListClient with a combined parameter "list*" ("%s%d","list").
network
low complexity
tendacn CWE-787
critical
9.8
2022-09-15 CVE-2022-38325 Classic Buffer Overflow vulnerability in Tendacn Ac15 Firmware and Ac18 Firmware
Tenda AC15 WiFi Router V15.03.05.19_multi and AC18 WiFi Router V15.03.05.19_multi were discovered to contain a buffer overflow via the filePath parameter at /goform/expandDlnaFile.
network
low complexity
tendacn CWE-120
critical
9.8
2022-09-15 CVE-2022-38326 Classic Buffer Overflow vulnerability in Tendacn Ac15 Firmware and Ac18 Firmware
Tenda AC15 WiFi Router V15.03.05.19_multi and AC18 WiFi Router V15.03.05.19_multi were discovered to contain a buffer overflow via the page parameter at /goform/NatStaticSetting.
network
low complexity
tendacn CWE-120
critical
9.8
2022-08-30 CVE-2022-36552 Files or Directories Accessible to External Parties vulnerability in Tendacn AC6 Firmware
Tenda AC6(AC1200) v5.0 Firmware v02.03.01.114 and below contains an issue in the component /cgi-bin/DownloadFlash which allows attackers to steal all data such as source code and system files via a crafted GET request.
network
low complexity
tendacn CWE-552
7.5