Filtered by vendor Tenda Subscriptions
Total 870 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2024-32286 1 Tenda 1 W30e Firmware 2024-08-02 9.8 Critical
Tenda W30E v1.0 V1.0.1.25(633) firmware has a stack overflow vulnerability located via the page parameter in the fromVirtualSer function.
CVE-2024-32318 1 Tenda 1 Ac500 Firmware 2024-08-02 9.8 Critical
Tenda AC500 V2.0.1.9(1307) firmware has a stack overflow vulnerability via the vlan parameter in the formSetVlanInfo function.
CVE-2024-32292 1 Tenda 1 W30e Firmware 2024-08-02 8.8 High
Tenda W30E v1.0 V1.0.1.25(633) firmware contains a command injection vulnerablility in the formexeCommand function via the cmdinput parameter.
CVE-2024-32312 1 Tenda 1 F1203 Firmware 2024-08-02 5.7 Medium
Tenda F1203 V2.0.1.6 firmware has a stack overflow vulnerability located in the adslPwd parameter of the formWanParameterSetting function.
CVE-2024-32282 1 Tenda 1 Fh1202 Firmware 2024-08-02 6.3 Medium
Tenda FH1202 v1.2.0.14(408) firmware contains a command injection vulnerablility in the formexeCommand function via the cmdinput parameter.
CVE-2024-32291 1 Tenda 2 W30e, W30e Firmware 2024-08-02 7.5 High
Tenda W30E v1.0 firmware v1.0.1.25(633) has a stack overflow vulnerability via the page parameter in the fromNatlimit function.
CVE-2024-32306 1 Tenda 1 Ac10u Firmware 2024-08-02 5.7 Medium
Tenda AC10U v1.0 Firmware v15.03.06.49 has a stack overflow vulnerability located via the PPW parameter in the fromWizardHandle function.
CVE-2024-32301 1 Tenda 1 Ac7 Firmware 2024-08-02 9.8 Critical
Tenda AC7V1.0 v15.03.06.44 firmware has a stack overflow vulnerability via the PPW parameter in the fromWizardHandle function.
CVE-2024-32283 1 Tenda 1 Fh1203 2024-08-02 7.3 High
Tenda FH1203 V2.0.1.6 firmware has a command injection vulnerablility in formexeCommand function via the cmdinput parameter.
CVE-2024-32302 1 Tenda 1 Fh1202 Firmware 2024-08-02 6.3 Medium
Tenda FH1202 v1.2.0.14(408) firmware has a stack overflow vulnerability via the PPW parameter in the fromWizardHandle function.
CVE-2024-32287 1 Tenda 1 W30e Firmware 2024-08-02 6.5 Medium
Tenda W30E v1.0 V1.0.1.25(633) firmware has a stack overflow vulnerability via the qos parameter in the fromqossetting function.
CVE-2024-30631 1 Tenda 1 Fh1205 Firmware 2024-08-02 4.3 Medium
Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the schedStartTime parameter from setSchedWifi function.
CVE-2024-30613 1 Tenda 1 Ac15 Firmware 2024-08-02 4.3 Medium
Tenda AC15 v15.03.05.18 has a stack overflow vulnerability in the time parameter from the setSmartPowerManagement function.
CVE-2024-30588 1 Tenda 1 Fh1202 Firmware 2024-08-02 4.3 Medium
Tenda FH1202 v1.2.0.14(408) has a stack overflow vulnerability in the schedStartTime parameter of the setSchedWifi function.
CVE-2024-30620 1 Tenda 2 Ax1803, Ax1803 Firmware 2024-08-02 9.8 Critical
Tenda AX1803 v1.0.0.1 contains a stack overflow via the serviceName parameter in the function fromAdvSetMacMtuWan.
CVE-2024-30638 1 Tenda 1 F1202 Firmware 2024-08-02 4.3 Medium
Tenda F1202 v1.2.0.20(408) has a stack overflow vulnerability via the entrys parameter in the fromAddressNat function.
CVE-2024-28535 1 Tenda 1 Ac18 Firmware 2024-08-02 9.8 Critical
Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the mitInterface parameter of fromAddressNat function.
CVE-2024-24543 1 Tenda 2 Ac9, Ac9 Firmware 2024-08-01 9.8 Critical
Buffer Overflow vulnerability in the function setSchedWifi in Tenda AC9 v.3.0, firmware version v.15.03.06.42_multi allows a remote attacker to cause a denial of service or run arbitrary code via crafted overflow data.
CVE-2024-6964 1 Tenda 2 O3, O3 Firmware1.0.0.10\(2478\) 2024-08-01 8.8 High
A vulnerability, which was classified as critical, was found in Tenda O3 1.0.0.10. Affected is the function fromDhcpSetSer. The manipulation of the argument dhcpEn/startIP/endIP/preDNS/altDNS/mask/gateway leads to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-272118 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
CVE-2024-6962 1 Tenda 3 O3, O3 Firmware1.0.0.10\(2478\), O3v2 2024-08-01 8.8 High
A vulnerability classified as critical was found in Tenda O3 1.0.0.10. This vulnerability affects the function formQosSet. The manipulation of the argument remark/ipRange/upSpeed/downSpeed/enable leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-272116. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.