Tenda

Ax1806 Firmware

61 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.28%
  • Veröffentlicht 20.05.2024 18:15:10
  • Zuletzt bearbeitet 17.03.2025 14:29:37

Tenda AX1806 v1.0.0.1 contains a stack overflow via the adv.iptv.stballvlans parameter in the function formSetIptv.

Exploit
  • EPSS 0.59%
  • Veröffentlicht 20.05.2024 18:15:10
  • Zuletzt bearbeitet 17.03.2025 14:28:19

Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.stb.mode parameter in the function formSetIptv.

  • EPSS 0.25%
  • Veröffentlicht 26.04.2024 21:15:50
  • Zuletzt bearbeitet 27.01.2025 18:30:27

A vulnerability was found in Tenda AX1806 1.0.0.1 and classified as critical. Affected by this issue is the function formSetRebootTimer of the file /goform/SetRebootTimer. The manipulation of the argument rebootTime leads to stack-based buffer overfl...

  • EPSS 0.61%
  • Veröffentlicht 26.04.2024 20:15:07
  • Zuletzt bearbeitet 27.01.2025 18:30:38

A vulnerability has been found in Tenda AX1806 1.0.0.1 and classified as critical. Affected by this vulnerability is the function formSetDeviceName of the file /goform/SetOnlineDevName. The manipulation of the argument devName leads to stack-based bu...

  • EPSS 0.58%
  • Veröffentlicht 26.04.2024 19:15:47
  • Zuletzt bearbeitet 27.01.2025 18:30:46

A vulnerability, which was classified as critical, was found in Tenda AX1806 1.0.0.1. Affected is the function R7WebsSecurityHandler of the file /goform/execCommand. The manipulation of the argument password leads to stack-based buffer overflow. It i...

Exploit
  • EPSS 0.17%
  • Veröffentlicht 07.11.2023 15:15:10
  • Zuletzt bearbeitet 21.11.2024 08:30:18

Tenda AX1806 V1.0.0.1 contains a stack overflow vulnerability in function sub_455D4, called by function fromSetWirelessRepeat.

Exploit
  • EPSS 0.17%
  • Veröffentlicht 07.11.2023 15:15:10
  • Zuletzt bearbeitet 21.11.2024 08:30:18

Tenda AX1806 V1.0.0.1 contains a heap overflow vulnerability in setSchedWifi function, in which the src and v12 are directly obtained from http request parameter schedStartTime and schedEndTime without checking their size.

Exploit
  • EPSS 5.91%
  • Veröffentlicht 06.07.2022 17:15:08
  • Zuletzt bearbeitet 21.11.2024 07:09:49

Tenda AX1806 v1.0.0.1 was discovered to contain a command injection vulnerability via the function WanParameterSetting.

Exploit
  • EPSS 0.31%
  • Veröffentlicht 01.07.2022 18:15:09
  • Zuletzt bearbeitet 21.11.2024 07:05:40

Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the function formSetVirtualSer.

Exploit
  • EPSS 0.56%
  • Veröffentlicht 01.07.2022 18:15:08
  • Zuletzt bearbeitet 21.11.2024 07:05:40

Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the deviceList parameter in the function formAddMacfilterRule.