CVE-2024-50854
- EPSS 0.43%
- Veröffentlicht 13.11.2024 15:15:09
- Zuletzt bearbeitet 14.03.2025 17:15:48
Tenda G3 v3.0 v15.11.0.20 was discovered to contain a stack overflow via the formSetPortMapping function.
CVE-2024-50853
- EPSS 3.8%
- Veröffentlicht 13.11.2024 15:15:08
- Zuletzt bearbeitet 21.11.2024 17:15:21
Tenda G3 v3.0 v15.11.0.20 was discovered to contain a command injection vulnerability via the formSetDebugCfg function.
CVE-2024-50852
- EPSS 3.8%
- Veröffentlicht 13.11.2024 15:15:08
- Zuletzt bearbeitet 21.11.2024 17:15:21
Tenda G3 v3.0 v15.11.0.20 was discovered to contain a command injection vulnerability via the formSetUSBPartitionUmount function.
CVE-2024-46628
- EPSS 24.5%
- Veröffentlicht 26.09.2024 20:15:06
- Zuletzt bearbeitet 04.10.2024 17:18:31
Tenda G3 Router firmware v15.03.05.05 was discovered to contain a remote code execution (RCE) vulnerability via the usbPartitionName parameter in the formSetUSBPartitionUmount function.
CVE-2024-8224
- EPSS 0.27%
- Veröffentlicht 27.08.2024 23:15:03
- Zuletzt bearbeitet 13.12.2024 15:15:38
A vulnerability, which was classified as critical, has been found in Tenda G3 15.11.0.20. This issue affects the function formSetDebugCfg of the file /goform/setDebugCfg. The manipulation of the argument enable/level/module leads to stack-based buffe...
CVE-2022-24172
- EPSS 0.35%
- Veröffentlicht 04.02.2022 02:15:11
- Zuletzt bearbeitet 21.11.2024 06:49:57
Tenda routers G1 and G3 v15.11.0.17(9502)_CN were discovered to contain a stack overflow in the function formAddDhcpBindRule. This vulnerability allows attackers to cause a Denial of Service (DoS) via the addDhcpRules parameter.
CVE-2022-24171
- EPSS 15.55%
- Veröffentlicht 04.02.2022 02:15:11
- Zuletzt bearbeitet 21.11.2024 06:49:57
Tenda routers G1 and G3 v15.11.0.17(9502)_CN were discovered to contain a command injection vulnerability in the function formSetPppoeServer. This vulnerability allows attackers to execute arbitrary commands via the pppoeServerIP, pppoeServerStartIP,...
CVE-2022-24170
- EPSS 15.55%
- Veröffentlicht 04.02.2022 02:15:11
- Zuletzt bearbeitet 21.11.2024 06:49:57
Tenda routers G1 and G3 v15.11.0.17(9502)_CN were discovered to contain a command injection vulnerability in the function formSetIpSecTunnel. This vulnerability allows attackers to execute arbitrary commands via the IPsecLocalNet and IPsecRemoteNet p...
CVE-2022-24169
- EPSS 0.35%
- Veröffentlicht 04.02.2022 02:15:11
- Zuletzt bearbeitet 21.11.2024 06:49:57
Tenda routers G1 and G3 v15.11.0.17(9502)_CN were discovered to contain a stack overflow in the function formIPMacBindAdd. This vulnerability allows attackers to cause a Denial of Service (DoS) via the IPMacBindRule parameter.
CVE-2022-24168
- EPSS 4.33%
- Veröffentlicht 04.02.2022 02:15:11
- Zuletzt bearbeitet 21.11.2024 06:49:57
Tenda routers G1 and G3 v15.11.0.17(9502)_CN were discovered to contain a command injection vulnerability in the function formSetIpGroup. This vulnerability allows attackers to execute arbitrary commands via the IPGroupStartIP and IPGroupEndIP parame...