An access control issue in /usr/sbin/httpd in Tenda TX9 V1 V22.03.02.54, Tenda AX3 V3 V16.03.12.11, Tenda AX9 V1 V22.03.01.46, and Tenda AX12 V1 V22.03.01.46 allows attackers to bypass authentication on any endpoint via a crafted URL.
Subscriptions
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 11 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Fri, 25 Apr 2025 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tenda
Tenda ax12 Tenda ax12 Firmware Tenda ax3 Tenda ax3 Firmware Tenda ax9 Tenda ax9 Firmware Tenda tx9 Tenda tx9 Firmware |
|
| CPEs | cpe:2.3:h:tenda:ax12:v1:*:*:*:*:*:*:* cpe:2.3:h:tenda:ax3:v3:*:*:*:*:*:*:* cpe:2.3:h:tenda:ax9:v1:*:*:*:*:*:*:* cpe:2.3:h:tenda:tx9:v1:*:*:*:*:*:*:* cpe:2.3:o:tenda:ax12_firmware:22.03.01.46:*:*:*:*:*:*:* cpe:2.3:o:tenda:ax3_firmware:16.03.12.11:*:*:*:*:*:*:* cpe:2.3:o:tenda:ax9_firmware:22.03.01.46:*:*:*:*:*:*:* cpe:2.3:o:tenda:tx9_firmware:22.03.02.54:*:*:*:*:*:*:* |
|
| Vendors & Products |
Tenda
Tenda ax12 Tenda ax12 Firmware Tenda ax3 Tenda ax3 Firmware Tenda ax9 Tenda ax9 Firmware Tenda tx9 Tenda tx9 Firmware |
Mon, 26 Aug 2024 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-284 | |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-26T15:26:43.471Z
Reserved: 2023-11-06T00:00:00.000Z
Link: CVE-2023-47422
Updated: 2024-08-02T21:09:37.278Z
Status : Analyzed
Published: 2024-02-20T22:15:08.143
Modified: 2025-04-25T20:26:01.170
Link: CVE-2023-47422
No data.
OpenCVE Enrichment
No data.
Weaknesses