- EPSS 0.28%
- Veröffentlicht 20.05.2024 18:15:10
- Zuletzt bearbeitet 17.03.2025 14:29:37
Tenda AX1806 v1.0.0.1 contains a stack overflow via the adv.iptv.stballvlans parameter in the function formSetIptv.
CVE-2024-35571
- EPSS 0.59%
- Veröffentlicht 20.05.2024 18:15:10
- Zuletzt bearbeitet 17.03.2025 14:28:19
Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.stb.mode parameter in the function formSetIptv.
CVE-2024-4239
- EPSS 0.25%
- Veröffentlicht 26.04.2024 21:15:50
- Zuletzt bearbeitet 27.01.2025 18:30:27
A vulnerability was found in Tenda AX1806 1.0.0.1 and classified as critical. Affected by this issue is the function formSetRebootTimer of the file /goform/SetRebootTimer. The manipulation of the argument rebootTime leads to stack-based buffer overfl...
CVE-2024-4238
- EPSS 0.61%
- Veröffentlicht 26.04.2024 20:15:07
- Zuletzt bearbeitet 27.01.2025 18:30:38
A vulnerability has been found in Tenda AX1806 1.0.0.1 and classified as critical. Affected by this vulnerability is the function formSetDeviceName of the file /goform/SetOnlineDevName. The manipulation of the argument devName leads to stack-based bu...
CVE-2024-4237
- EPSS 0.58%
- Veröffentlicht 26.04.2024 19:15:47
- Zuletzt bearbeitet 27.01.2025 18:30:46
A vulnerability, which was classified as critical, was found in Tenda AX1806 1.0.0.1. Affected is the function R7WebsSecurityHandler of the file /goform/execCommand. The manipulation of the argument password leads to stack-based buffer overflow. It i...
CVE-2023-47456
- EPSS 0.17%
- Veröffentlicht 07.11.2023 15:15:10
- Zuletzt bearbeitet 21.11.2024 08:30:18
Tenda AX1806 V1.0.0.1 contains a stack overflow vulnerability in function sub_455D4, called by function fromSetWirelessRepeat.
CVE-2023-47455
- EPSS 0.17%
- Veröffentlicht 07.11.2023 15:15:10
- Zuletzt bearbeitet 21.11.2024 08:30:18
Tenda AX1806 V1.0.0.1 contains a heap overflow vulnerability in setSchedWifi function, in which the src and v12 are directly obtained from http request parameter schedStartTime and schedEndTime without checking their size.
CVE-2022-34597
- EPSS 5.91%
- Veröffentlicht 06.07.2022 17:15:08
- Zuletzt bearbeitet 21.11.2024 07:09:49
Tenda AX1806 v1.0.0.1 was discovered to contain a command injection vulnerability via the function WanParameterSetting.
CVE-2022-32033
- EPSS 0.31%
- Veröffentlicht 01.07.2022 18:15:09
- Zuletzt bearbeitet 21.11.2024 07:05:40
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the function formSetVirtualSer.
- EPSS 0.56%
- Veröffentlicht 01.07.2022 18:15:08
- Zuletzt bearbeitet 21.11.2024 07:05:40
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the deviceList parameter in the function formAddMacfilterRule.