Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2975▼ 108 respecto a la semana anterior
Críticas / altas1449▲ 87 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
–

37 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.5)9.6%—Tenda Ax12 Firmware18/5/202217/6/2026
Tenda AX12 v22.03.01.21_cn was discovered to contain a stack overflow via the lanIp parameter in /goform/AdvSetLanIp.
ModificadaCrítica (9.8)8.9%—Tenda Ax12 Firmware4/5/202217/6/2026
Tenda AX12 v22.03.01.21_CN was discovered to contain a stack overflow via the list parameter at /goform/SetNetControlList.
ModificadaCrítica (9.8)10%—Tenda Ax12 Firmware3/5/202217/6/2026
There is a stack overflow vulnerability in the /goform/setMacFilterCfg function in the httpd service of Tenda ax12 22.03.01.21_cn router. An attacker can obtain a stable shell through a carefully constructed payload
ModificadaMedia (6.5)0.46%—Tenda Ax12 Firmware25/4/202217/6/2026
Tenda AX12 V22.03.01.21_CN was discovered to contain a Cross-Site Request Forgery (CSRF) via the function sub_422168 at /goform/WifiExtraSet.
ModificadaMedia (6.5)0.46%—Tenda Ax12 Firmware25/4/202217/6/2026
Tenda AX12 V22.03.01.21_CN was discovered to contain a Cross-Site Request Forgery (CSRF) via the function sub_42E328 at /goform/SysToolReboot.
ModificadaAlta (7.5)1.2%—Tenda Ax12 Firmware10/3/202217/6/2026
Tenda AX12 v22.03.01.21 was discovered to contain a stack overflow in the function sub_42DE00. This vulnerability allows attackers to cause a Denial of Service (DoS) via the list parameter.
ModificadaAlta (7.5)1.2%—Tenda Ax12 Firmware10/3/202217/6/2026
Tenda AX12 v22.03.01.21 was discovered to contain a stack overflow in the function sub_4327CC. This vulnerability allows attackers to cause a Denial of Service (DoS) via the list parameter.
ModificadaAlta (7.5)1.2%—Tenda Ax12 Firmware10/3/202217/6/2026
Tenda AX12 v22.03.01.21 was discovered to contain a stack overflow in the function sub_42E328. This vulnerability allows attackers to cause a Denial of Service (DoS) via the list parameter.
ModificadaAlta (7.5)1.2%—Tenda Ax12 Firmware10/3/202217/6/2026
Tenda AX12 v22.03.01.21 was discovered to contain a stack buffer overflow in the function sub_422CE4. This vulnerability allows attackers to cause a Denial of Service (DoS) via the strcpy parameter.
ModificadaAlta (7.5)1.8%—Tenda Ax12 Firmware16/2/202217/6/2026
A Buffer Overflow vulnerability exists in Tenda Router AX12 V22.03.01.21_CN in the sub_422CE4 function in the goform/setIPv6Status binary file /usr/sbin/httpd via the conType parameter, which causes a Denial of Service.
ModificadaAlta (7.5)12%—Tenda Ax12 Firmware14/2/202217/6/2026
A Buffer Overflow vulnerability exists in Tenda Router AX12 V22.03.01.21_CN in the sub_422CE4 function in page /goform/setIPv6Status via the prefixDelegate parameter, which causes a Denial of Service.
ModificadaAlta (7.5)1.2%—Tenda AX3 FirmwareTenda Ax12 Firmware4/2/202217/6/2026
Tenda AX3 v16.03.12.10_CN and AX12 22.03.01.2_CN was discovered to contain a stack overflow in the function form_fast_setting_wifi_set. This vulnerability allows attackers to cause a Denial of Service (DoS) via the timeZone parameter.
Orbitaley — Vulnerabilidades