Tenda

W20e

29 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.6%
  • Veröffentlicht 14.09.2026 06:15:08
  • Zuletzt bearbeitet 14.09.2026 20:56:48

A security flaw has been discovered in Tenda W20E 15.11.0.61068_1546_841_CN_TDC. Impacted is the function formDelWebAuthWhiteUser. Performing a manipulation of the argument webAuthWhiteUserIndex results in stack-based buffer overflow. The attack can ...

  • EPSS 0.4%
  • Veröffentlicht 14.09.2026 06:00:12
  • Zuletzt bearbeitet 15.09.2026 16:17:39

A vulnerability was identified in Tenda W20E 15.11.0.61068_1546_841_CN_TDC. This issue affects the function formIPMacBindAdd of the component HTTP Handler. Such manipulation of the argument IPMacBindRule leads to stack-based buffer overflow. It is po...

  • EPSS 0.17%
  • Veröffentlicht 17.08.2026 00:00:00
  • Zuletzt bearbeitet 09.09.2026 16:04:24

Buffer Overflow vulnerability in Tenda W20E V16.01.0.6(2782) allows an attacker to execute arbitrary code. This is an incomplete fix for CVE-2025-44867 and CVE-2026-36819

  • EPSS 0.19%
  • Veröffentlicht 17.08.2026 00:00:00
  • Zuletzt bearbeitet 31.08.2026 20:12:02

Tenda W20E V16.01.0.6(2782) /goform/telnet endpoint allows unauthenticated remote attackers to activate the Telnet daemon and obtain root shell access.

Exploit
  • EPSS 0.47%
  • Veröffentlicht 14.08.2026 12:30:09
  • Zuletzt bearbeitet 14.08.2026 19:09:39

A weakness has been identified in Tenda W20E 15.11.0.6(1068_1546_841)_CN_TDC. The affected element is the function ipMacBindListStore of the file /goform/addIpMacBind. Executing a manipulation of the argument IPMacBindRule can lead to stack-based buf...

Exploit
  • EPSS 0.47%
  • Veröffentlicht 14.08.2026 12:15:10
  • Zuletzt bearbeitet 18.08.2026 14:16:57

A security flaw has been discovered in Tenda W20E 15.11.0.6(1068_1546_841)_CN_TDC. Impacted is the function formQOSRuleDel of the file /goform/delQos of the component QoS Rule Deletion. Performing a manipulation of the argument qosIndex results in st...

Exploit
  • EPSS 0.6%
  • Veröffentlicht 14.08.2026 11:30:11
  • Zuletzt bearbeitet 14.08.2026 19:09:56

A vulnerability was identified in Tenda W20E 15.11.0.6(1068_1546_841)_CN_TDC. This issue affects the function lstAdd of the file /goform/editQos of the component QoS Edit. Such manipulation of the argument qosListConnecttedNum leads to stack-based bu...

  • EPSS 0.31%
  • Veröffentlicht 09.06.2026 00:00:00
  • Zuletzt bearbeitet 23.07.2026 09:10:00

Shenzhen Tenda Technology Co., Ltd Tenda W20E v15.11.0.6 was discovered to contain a buffer overflow in the webAuthUserInfo parameter of the formAddWebAuthUser function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a cra...

  • EPSS 0.31%
  • Veröffentlicht 09.06.2026 00:00:00
  • Zuletzt bearbeitet 23.07.2026 09:10:00

Shenzhen Tenda Technology Co., Ltd Tenda W20E v15.11.0.6 was discovered to contain a buffer overflow in the macAddr parameter of the formDelStaState function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted HTTP r...

  • EPSS 0.31%
  • Veröffentlicht 09.06.2026 00:00:00
  • Zuletzt bearbeitet 23.07.2026 09:10:00

Shenzhen Tenda Technology Co., Ltd Tenda W20E v15.11.0.6 was discovered to contain a buffer overflow in the picCropName parameter of the formCropAndSetWewifiPic function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a cr...