Filtered by vendor Tenda Subscriptions
Total 1579 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2024-30589 1 Tenda 2 Fh1202, Fh1202 Firmware 2025-03-13 9.8 Critical
Tenda FH1202 v1.2.0.14(408) firmware has a stack overflow vulnerability in the entrys parameter of the fromAddressNat function.
CVE-2024-30588 1 Tenda 2 Fh1202, Fh1202 Firmware 2025-03-13 4.3 Medium
Tenda FH1202 v1.2.0.14(408) has a stack overflow vulnerability in the schedStartTime parameter of the setSchedWifi function.
CVE-2024-30587 1 Tenda 2 Fh1202, Fh1202 Firmware 2025-03-13 9.8 Critical
Tenda FH1202 v1.2.0.14(408) has a stack overflow vulnerability in the urls parameter of the saveParentControlInfo function.
CVE-2024-30586 1 Tenda 2 Fh1202, Fh1202 Firmware 2025-03-13 6.5 Medium
Tenda FH1202 v1.2.0.14(408) has a stack overflow vulnerability in the security_5g parameter of the formWifiBasicSet function.
CVE-2024-30585 1 Tenda 2 Fh1202, Fh1202 Firmware 2025-03-13 6.5 Medium
Tenda FH1202 v1.2.0.14(408) has a stack overflow vulnerability in the deviceId parameter of the saveParentControlInfo function.
CVE-2024-30583 1 Tenda 2 Fh1202, Fh1202 Firmware 2025-03-13 8.0 High
Tenda FH1202 v1.2.0.14(408) has a stack overflow vulnerability in the mitInterface parameter of the fromAddressNat function.
CVE-2024-30596 1 Tenda 2 Fh1202, Fh1202 Firmware 2025-03-13 9.8 Critical
Tenda FH1202 v1.2.0.14(408) has a stack overflow vulnerability in the deviceId parameter of the formSetDeviceName function.
CVE-2024-30594 1 Tenda 2 Fh1202, Fh1202 Firmware 2025-03-13 6.5 Medium
Tenda FH1202 v1.2.0.14(408) has a stack overflow vulnerability in the deviceMac parameter of the addWifiMacFilter function.
CVE-2024-30595 1 Tenda 2 Fh1202, Fh1202 Firmware 2025-03-13 9.8 Critical
Tenda FH1202 v1.2.0.14(408) has a stack overflow vulnerability in the deviceId parameter of the addWifiMacFilter function.
CVE-2024-42947 1 Tenda 2 Fh1201, Fh1201 Firmware 2025-03-13 9.8 Critical
An issue in the handler function in /goform/telnet of Tenda FH1201 v1.2.0.14 (408) allows attackers to execute arbitrary commands via a crafted HTTP request.
CVE-2023-24212 1 Tenda 2 Ax3, Ax3 Firmware 2025-03-12 9.8 Critical
Tenda AX3 V16.03.12.11 was discovered to contain a stack overflow via the timeType function at /goform/SetSysTimeCfg.
CVE-2024-2546 1 Tenda 2 Ac18, Ac18 Firmware 2025-03-11 8.8 High
A vulnerability has been found in Tenda AC18 15.13.07.09 and classified as critical. Affected by this vulnerability is the function fromSetWirelessRepeat. The manipulation of the argument wpapsk_crypto5g leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-256999. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
CVE-2023-23080 1 Tenda 10 Cp3, Cp3 Firmware, Cp7 and 7 more 2025-03-11 9.8 Critical
Certain Tenda products are vulnerable to command injection. This affects Tenda CP7 Tenda CP7<=V11.10.00.2211041403 and Tenda CP3 v.10 Tenda CP3 v.10<=V20220906024_2025 and Tenda IT7-PCS Tenda IT7-PCS<=V2209020914 and Tenda IT7-LCS Tenda IT7-LCS<=V2209020914 and Tenda IT7-PRS Tenda IT7-PRS<=V2209020908.
CVE-2023-25235 1 Tenda 2 Ac500, Ac500 Firmware 2025-03-10 7.5 High
Tenda AC500 V2.0.1.9(1307) is vulnerable to Buffer Overflow in function formOneSsidCfgSet via parameter ssid.
CVE-2023-25234 1 Tenda 2 Ac500, Ac500 Firmware 2025-03-10 9.8 Critical
Tenda AC500 V2.0.1.9(1307) is vulnerable to Buffer Overflow in function fromAddressNat via parameters entrys and mitInterface.
CVE-2023-25231 1 Tenda 2 W30e, W30e Firmware 2025-03-10 9.8 Critical
Tenda Router W30E V1.0.1.25(633) is vulnerable to Buffer Overflow in function fromRouteStatic via parameters entrys and mitInterface.
CVE-2023-25233 1 Tenda 2 Ac500, Ac500 Firmware 2025-03-10 9.8 Critical
Tenda AC500 V2.0.1.9(1307) is vulnerable to Buffer Overflow in function fromRouteStatic via parameters entrys and mitInterface.
CVE-2025-0848 1 Tenda 2 A18, A18 Firmware 2025-03-06 6.5 Medium
A vulnerability was found in Tenda A18 up to 15.13.07.09. It has been rated as critical. This issue affects the function SetCmdlineRun of the file /goform/SetCmdlineRun of the component HTTP POST Request Handler. The manipulation of the argument wpapsk_crypto5g leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
CVE-2025-25343 1 Tenda 2 Ac6, Ac6 Firmware 2025-03-05 9.8 Critical
Tenda AC6 V15.03.05.16 firmware has a buffer overflow vulnerability in the formexeCommand function.
CVE-2025-1899 1 Tenda 2 Tx3, Tx3 Firmware 2025-03-05 6.5 Medium
A vulnerability has been found in Tenda TX3 16.03.13.11_multi and classified as critical. Affected by this vulnerability is an unknown functionality of the file /goform/setPptpUserList. The manipulation of the argument list leads to buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.