Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2989▼ 73 respecto a la semana anterior
Críticas / altas1415▲ 65 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
–

61 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaCrítica (9.8)0.46%—Tenda Ax1806 Firmware15/7/202417/6/2026
A vulnerability in /goform/SetNetControlList in the sub_656BC function in Tenda AX1806 1.0.0.1 firmware leads to stack-based buffer overflow.
AnalizadaMedia (6.5)0.40%—Tenda Ax1806 Firmware10/7/202417/6/2026
A vulnerability was found in Tenda AX1806 1.0.0.1. Affected by this issue is the function formSetRebootTimer of the file /goform/SetIpMacBind. The manipulation of the argument list leads to stack-based buffer overflow.
AnalizadaCrítica (9.8)0.57%—Tenda Ax1806 Firmware20/5/202417/6/2026
Tenda AX1806 v1.0.0.1 contains a stack overflow via the adv.iptv.stbpvid parameter in the function formSetIptv.
AnalizadaAlta (7.7)0.42%—Tenda Ax1806 Firmware20/5/202417/6/2026
Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.city.vlan parameter in the function formSetIptv.
AnalizadaAlta (8)0.43%—Tenda Ax1806 Firmware20/5/202417/6/2026
Tenda AX1806 v1.0.0.1 contains a stack overflow via the adv.iptv.stballvlans parameter in the function formSetIptv.
AnalizadaMedia (5.2)0.32%—Tenda Ax1806 Firmware20/5/202417/6/2026
Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.stb.port parameter in the function formSetIptv.
AnalizadaCrítica (9.8)0.57%—Tenda Ax1806 Firmware20/5/202417/6/2026
Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.stb.mode parameter in the function formSetIptv.
AnalizadaAlta (8.8)1.5%—Tenda Ax1806 Firmware26/4/202417/6/2026
A vulnerability was found in Tenda AX1806 1.0.0.1 and classified as critical. Affected by this issue is the function formSetRebootTimer of the file /goform/SetRebootTimer. The manipulation of the argument rebootTime leads to stack-based buffer overflow. The attack may be launched remotely. The exploit has been…
AnalizadaAlta (8.8)1.5%—Tenda Ax1806 Firmware26/4/202417/6/2026
A vulnerability has been found in Tenda AX1806 1.0.0.1 and classified as critical. Affected by this vulnerability is the function formSetDeviceName of the file /goform/SetOnlineDevName. The manipulation of the argument devName leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has…
AnalizadaAlta (8.8)1.5%—Tenda Ax1806 Firmware26/4/202417/6/2026
A vulnerability, which was classified as critical, was found in Tenda AX1806 1.0.0.1. Affected is the function R7WebsSecurityHandler of the file /goform/execCommand. The manipulation of the argument password leads to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been…
ModificadaCrítica (9.1)0.80%—Tenda Ax1806 Firmware7/11/202317/6/2026
Tenda AX1806 V1.0.0.1 contains a stack overflow vulnerability in function sub_455D4, called by function fromSetWirelessRepeat.
ModificadaCrítica (9.1)0.80%—Tenda Ax1806 Firmware7/11/202317/6/2026
Tenda AX1806 V1.0.0.1 contains a heap overflow vulnerability in setSchedWifi function, in which the src and v12 are directly obtained from http request parameter schedStartTime and schedEndTime without checking their size.
ModificadaCrítica (9.8)2.3%—Tenda Ax1806 Firmware6/7/202217/6/2026
Tenda AX1806 v1.0.0.1 was discovered to contain a command injection vulnerability via the function WanParameterSetting.
ModificadaAlta (7.5)1.2%—Tenda Ax1806 Firmware1/7/202217/6/2026
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the function formSetVirtualSer.
ModificadaCrítica (9.8)10%—Tenda Ax1806 Firmware1/7/202217/6/2026
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the deviceList parameter in the function formAddMacfilterRule.
ModificadaAlta (7.5)1.2%—Tenda Ax1806 Firmware1/7/202217/6/2026
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the list parameter in the function fromSetRouteStatic.
ModificadaAlta (7.5)1.2%—Tenda Ax1806 Firmware1/7/202217/6/2026
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the list parameter in the function formSetQosBand.
ModificadaAlta (7.5)1.2%—Tenda Ax1806 Firmware6/5/202217/6/2026
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the wanMTU parameter in the function fromAdvSetMacMtuWan. This vulnerability allows attackers to cause a Denial of Service (DoS).
ModificadaAlta (7.5)1.2%—Tenda Ax1806 Firmware6/5/202217/6/2026
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the timeZone parameter in the function form_fast_setting_wifi_set. This vulnerability allows attackers to cause a Denial of Service (DoS).
ModificadaAlta (7.5)1.2%—Tenda Ax1806 Firmware6/5/202217/6/2026
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the list parameter in the function fromSetIpMacBind. This vulnerability allows attackers to cause a Denial of Service (DoS).
ModificadaAlta (7.5)1.2%—Tenda Ax1806 Firmware6/5/202217/6/2026
Tenda AX1806 v1.0.0.1 was discovered to contain a heap overflow via the mac parameter in the function GetParentControlInfo. This vulnerability allows attackers to cause a Denial of Service (DoS).
ModificadaAlta (7.5)1.2%—Tenda Ax1806 Firmware6/5/202217/6/2026
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the shareSpeed parameter in the function fromSetWifiGusetBasic. This vulnerability allows attackers to cause a Denial of Service (DoS).
ModificadaAlta (8.8)2.6%—Tenda Ax1806 FirmwareTenda Ax1803 Firmware2/5/202217/6/2026
Tenda AX1806 v1.0.0.1 was discovered to contain a command injection vulnerability in `SetIPv6Status` function
ModificadaAlta (7.5)1.2%—Tenda Ax1806 Firmware10/3/202217/6/2026
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function saveParentControlInfo. This vulnerability allows attackers to cause a Denial of Service (DoS) via the time parameter.
ModificadaAlta (7.5)1.2%—Tenda Ax1806 Firmware10/3/202217/6/2026
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function formSetProvince. This vulnerability allows attackers to cause a Denial of Service (DoS) via the ProvinceCode parameter.
Orbitaley — Vulnerabilidades