Tenda O3V2 v1.0.0.12(3880) was discovered to contain a Blind Command Injection via stpEn parameter in the SetStp function. This vulnerability allows attackers to execute arbitrary commands with root privileges.
Metrics
Affected Vendors & Products
References
History
Fri, 13 Dec 2024 15:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Tenda
Tenda o3 Tenda o3 Firmware |
|
CPEs | cpe:2.3:o:tendacn:o3v2_firmware:1.0.0.12\(3880\):*:*:*:*:*:*:* |
cpe:2.3:h:tenda:o3:2.0:*:*:*:*:*:*:* cpe:2.3:o:tenda:o3_firmware:1.0.0.12\(3880\):*:*:*:*:*:*:* |
Vendors & Products |
Tendacn
Tendacn o3v2 Tendacn o3v2 Firmware |
Tenda
Tenda o3 Tenda o3 Firmware |
MITRE
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-15T18:14:52.383Z
Reserved:
Link: CVE-2024-36604
Vulnrichment
Updated: 2024-08-02T03:37:05.347Z
NVD
Status : Analyzed
Published: 2024-06-04T19:20:13.927
Modified: 2024-12-13T15:15:04.127
Link: CVE-2024-36604
Redhat
No data.