In Tenda AC1200 Router model W15Ev2 V15.11.0.10(1576), there exists a command injection vulnerability in the function formSetFixTools. This vulnerability allows attackers to run arbitrary commands on the server via the hostname parameter.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-44105 | In Tenda AC1200 Router model W15Ev2 V15.11.0.10(1576), there exists a command injection vulnerability in the function formSetFixTools. This vulnerability allows attackers to run arbitrary commands on the server via the hostname parameter. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://boschko.ca/tenda_ac1200_router/ |
|
History
Mon, 07 Jul 2025 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tenda w15e
|
|
| CPEs | cpe:2.3:h:tenda:w15e:2.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Tenda ac1200 V-w15ev2
|
Tenda w15e
|
Wed, 30 Apr 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-04-30T14:47:48.923Z
Reserved: 2022-09-19T00:00:00.000Z
Link: CVE-2022-40847
Updated: 2024-08-03T12:28:42.910Z
Status : Analyzed
Published: 2022-11-15T02:15:11.270
Modified: 2025-07-07T18:20:52.457
Link: CVE-2022-40847
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD