Tenda

Ac7 Firmware

72 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 1.01%
  • Veröffentlicht 16.05.2025 20:31:06
  • Zuletzt bearbeitet 24.05.2025 01:12:25

A vulnerability was found in Tenda AC7 15.03.06.44. It has been declared as critical. Affected by this vulnerability is the function formSetRebootTimer of the file /goform/SetRebootTimer. The manipulation of the argument reboot_time leads to stack-ba...

Exploit
  • EPSS 1.29%
  • Veröffentlicht 16.05.2025 20:15:22
  • Zuletzt bearbeitet 24.05.2025 01:11:08

A vulnerability was found in Tenda AC7 15.03.06.44. It has been classified as critical. Affected is the function fromSafeSetMacFilter of the file /goform/setMacFilterCfg. The manipulation of the argument deviceList leads to stack-based buffer overflo...

  • EPSS 6.59%
  • Veröffentlicht 07.04.2025 09:31:08
  • Zuletzt bearbeitet 27.05.2025 14:22:29

A vulnerability was found in Tenda AC7 15.03.06.44. It has been rated as critical. Affected by this issue is the function formSetPPTPServer of the file /goform/SetPptpServerCfg. The manipulation of the argument pptp_server_start_ip/pptp_server_end_ip...

Exploit
  • EPSS 1.08%
  • Veröffentlicht 24.03.2025 00:00:00
  • Zuletzt bearbeitet 01.04.2025 19:58:46

A stack-based buffer overflow vulnerability in Tenda AC7 V15.03.06.44 allows a remote attacker to execute arbitrary code through a stack overflow attack using the security parameter of the formWifiBasicSet function.

Exploit
  • EPSS 0.53%
  • Veröffentlicht 19.03.2025 00:00:00
  • Zuletzt bearbeitet 01.04.2025 20:37:02

Tenda AC7 V1.0 V15.03.06.44 found a buffer overflow caused by the timeZone parameter in the form_fast_setting_wifi_set function, which can cause RCE.

  • EPSS 1.05%
  • Veröffentlicht 03.03.2025 05:15:10
  • Zuletzt bearbeitet 10.04.2025 13:32:42

A vulnerability, which was classified as critical, was found in Tenda AC7 up to 15.03.06.44. This affects the function formSetFirewallCfg of the file /goform/SetFirewallCfg. The manipulation of the argument firewallEn leads to stack-based buffer over...

  • EPSS 1.75%
  • Veröffentlicht 02.03.2025 17:15:11
  • Zuletzt bearbeitet 16.07.2025 14:13:01

A vulnerability, which was classified as critical, was found in Tenda AC7 1200M 15.03.06.44. Affected is the function TendaTelnet of the file /goform/telnet. The manipulation of the argument lan_ip leads to os command injection. It is possible to lau...

Exploit
  • EPSS 1.72%
  • Veröffentlicht 28.10.2024 20:15:06
  • Zuletzt bearbeitet 17.03.2025 14:41:08

Tenda AC7 v.15.03.06.44 ate_iwpriv_set has pre-authentication command injection allowing remote attackers to execute arbitrary code.

Exploit
  • EPSS 1.72%
  • Veröffentlicht 28.10.2024 20:15:06
  • Zuletzt bearbeitet 17.03.2025 14:40:19

Tenda AC7 v.15.03.06.44 ate_ifconfig_set has pre-authentication command injection allowing remote attackers to execute arbitrary code.

  • EPSS 0.81%
  • Veröffentlicht 23.10.2024 14:15:04
  • Zuletzt bearbeitet 01.11.2024 14:03:20

A vulnerability was found in Tenda AC6, AC7, AC8, AC9, AC10, AC10U, AC15, AC18, AC500 and AC1206 up to 20241022. It has been rated as problematic. This issue affects the function websReadEvent of the file /goform/GetIPTV. The manipulation of the argu...