CVE-2025-5853
- EPSS 0.99%
- Veröffentlicht 09.06.2025 00:31:06
- Zuletzt bearbeitet 09.06.2025 19:04:03
A vulnerability classified as critical was found in Tenda AC6 15.03.05.16. Affected by this vulnerability is the function formSetSafeWanWebMan of the file /goform/SetRemoteWebCfg. The manipulation of the argument remoteIp leads to stack-based buffer ...
CVE-2025-5852
- EPSS 0.62%
- Veröffentlicht 09.06.2025 00:00:18
- Zuletzt bearbeitet 09.06.2025 19:04:20
A vulnerability classified as critical has been found in Tenda AC6 15.03.05.16. Affected is the function formSetPPTPUserList of the file /goform/setPptpUserList. The manipulation of the argument list leads to buffer overflow. It is possible to launch...
CVE-2025-44172
- EPSS 0.32%
- Veröffentlicht 02.06.2025 00:00:00
- Zuletzt bearbeitet 03.06.2025 15:55:33
Tenda AC6 V15.03.05.16 was discovered to contain a stack overflow via the time parameter in the setSmartPowerManagement function.
CVE-2025-29121
- EPSS 0.21%
- Veröffentlicht 20.03.2025 00:00:00
- Zuletzt bearbeitet 28.03.2025 19:34:42
A vulnerability was found in Tenda AC6 V15.03.05.16. The vulnerability affects the functionality of the /goform/fast_setting_wifi_set file form_fast_setting_wifi_set. Using the timeZone parameter causes a stack-based buffer overflow.
CVE-2025-29031
- EPSS 0.19%
- Veröffentlicht 14.03.2025 00:00:00
- Zuletzt bearbeitet 19.03.2025 19:15:47
Tenda AC6 v15.03.05.16 was discovered to contain a buffer overflow via the fromAddressNat function.
CVE-2025-29030
- EPSS 0.19%
- Veröffentlicht 14.03.2025 00:00:00
- Zuletzt bearbeitet 19.03.2025 19:15:47
Tenda AC6 v15.03.05.16 was discovered to contain a buffer overflow via the formWifiWpsOOB function.
CVE-2025-29029
- EPSS 0.19%
- Veröffentlicht 14.03.2025 00:00:00
- Zuletzt bearbeitet 18.03.2025 18:15:28
Tenda AC6 v15.03.05.16 was discovered to contain a buffer overflow via the formSetSpeedWan function.
CVE-2025-25507
- EPSS 0.76%
- Veröffentlicht 21.02.2025 17:15:14
- Zuletzt bearbeitet 10.04.2025 13:37:05
There is a RCE vulnerability in Tenda AC6 15.03.05.16_multi. In the formexeCommand function, the parameter cmdinput will cause remote command execution.
CVE-2025-25505
- EPSS 0.14%
- Veröffentlicht 21.02.2025 17:15:14
- Zuletzt bearbeitet 10.04.2025 13:37:15
Tenda AC6 15.03.05.16_multi is vulnerable to Buffer Overflow in the sub_452A4 function.
CVE-2024-46450
- EPSS 0.12%
- Veröffentlicht 16.01.2025 22:15:39
- Zuletzt bearbeitet 07.07.2025 16:40:50
Incorrect access control in Tenda AC1200 Smart Dual-Band WiFi Router Model AC6 v2.0 Firmware v15.03.06.50 allows attackers to bypass authentication via a crafted web request.