CVE-2025-5606
- EPSS 3.43%
- Veröffentlicht 04.06.2025 19:00:21
- Zuletzt bearbeitet 10.06.2025 15:08:33
A vulnerability was found in Tenda AC18 15.03.05.05. It has been declared as critical. This vulnerability affects the function formSetIptv of the file /goform/SetIPTVCfg. The manipulation of the argument list leads to command injection. The attack ca...
CVE-2025-0528
- EPSS 5.93%
- Veröffentlicht 17.01.2025 15:15:12
- Zuletzt bearbeitet 28.05.2025 14:42:21
A vulnerability, which was classified as critical, has been found in Tenda AC8, AC10 and AC18 16.03.10.20. Affected by this issue is some unknown functionality of the file /goform/telnet of the component HTTP Request Handler. The manipulation leads t...
CVE-2024-57582
- EPSS 0.75%
- Veröffentlicht 16.01.2025 21:15:17
- Zuletzt bearbeitet 22.03.2025 14:15:15
Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the startIP parameter in the formSetPPTPServer function.
CVE-2024-57579
- EPSS 0.68%
- Veröffentlicht 16.01.2025 21:15:17
- Zuletzt bearbeitet 19.03.2025 21:15:37
Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the limitSpeedUp parameter in the formSetClientState function.
CVE-2024-57580
- EPSS 0.77%
- Veröffentlicht 16.01.2025 21:15:17
- Zuletzt bearbeitet 18.03.2025 19:15:46
Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the devName parameter in the formSetDeviceName function.
CVE-2024-57581
- EPSS 0.75%
- Veröffentlicht 16.01.2025 21:15:17
- Zuletzt bearbeitet 18.03.2025 19:15:47
Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the firewallEn parameter in the formSetFirewallCfg function.
CVE-2024-57583
- EPSS 1.51%
- Veröffentlicht 16.01.2025 21:15:17
- Zuletzt bearbeitet 04.02.2025 15:15:18
Tenda AC18 V15.03.05.19 was discovered to contain a command injection vulnerability via the usbName parameter in the formSetSambaConf function.
CVE-2024-57578
- EPSS 0.54%
- Veröffentlicht 16.01.2025 21:15:16
- Zuletzt bearbeitet 17.03.2025 14:53:41
Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the funcpara1 parameter in the formSetCfm function.
CVE-2024-57577
- EPSS 0.33%
- Veröffentlicht 16.01.2025 21:15:16
- Zuletzt bearbeitet 17.03.2025 14:51:55
Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the speed_dir parameter in the formSetSpeedWan function.
CVE-2024-57575
- EPSS 0.79%
- Veröffentlicht 16.01.2025 21:15:16
- Zuletzt bearbeitet 03.02.2025 20:15:34
Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the ssid parameter in the form_fast_setting_wifi_set function.