Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2862▼ 326 respecto a la semana anterior
Críticas / altas1389▼ 28 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)293▼ 216 respecto a la semana anterior
–

83 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaCrítica (9.8)0.84%—Tenda AC7 Firmware30/8/202317/6/2026
Tenda AC7 V1.0 V15.03.06.44 was discovered to contain a stack overflow via parameter security_5g at url /goform/WifiBasicSet.
ModificadaCrítica (9.8)0.84%—Tenda AC9 FirmwareTenda AC7 Firmware30/8/202317/6/2026
Tenda AC7 V1.0 V15.03.06.44 and Tenda AC9 V3.0 V15.03.06.42_multi were discovered to contain a stack overflow via parameter ssid at url /goform/fast_setting_wifi_set.
ModificadaCrítica (9.8)0.84%—Tenda Ac10 FirmwareTenda Ac1206 FirmwareTenda AC8 FirmwareTenda AC6 Firmware+37/8/202317/6/2026
Tenda AC10 V1.0 V15.03.06.23, AC1206 V15.03.06.23, AC8 v4 V16.03.34.06, AC6 V2.0 V15.03.06.23, AC7 V1.0 V15.03.06.44, AC5 V1.0 V15.03.06.28, AC9 V3.0 V15.03.06.42_multi and AC10 v4.0 V16.03.10.13 were discovered to contain a stack overflow via the list parameter in the formSetVirtualSer function.
ModificadaCrítica (9.8)0.85%—Tenda Ac10 FirmwareTenda Ac1206 FirmwareTenda AC6 FirmwareTenda AC7 Firmware+57/8/202317/6/2026
Tenda AC10 V1.0 V15.03.06.23, AC1206 V15.03.06.23, AC6 V2.0 V15.03.06.23, AC7 V1.0 V15.03.06.44, AC5 V1.0 V15.03.06.28, FH1203 V2.0.1.6, AC9 V3.0 V15.03.06.42_multi and FH1205 V2.0.0.7(775) were discovered to contain a stack overflow via the speed_dir parameter in the formSetSpeedWan function.
ModificadaCrítica (9.8)0.84%—Tenda Ac10 FirmwareTenda Ac1206 FirmwareTenda AC6 FirmwareTenda AC7 Firmware+57/8/202317/6/2026
Tenda AC6 V2.0 V15.03.06.23, AC7 V1.0 V15.03.06.44, F1203 V2.0.1.6, AC5 V1.0 V15.03.06.28, FH1203 V2.0.1.6 and AC9 V3.0 V15.03.06.42_multi, and FH1205 V2.0.0.7(775) were discovered to contain a stack overflow via the deviceId parameter in the formSetClientState function.
ModificadaCrítica (9.8)0.84%—Tenda Ac10 FirmwareTenda Ac1206 FirmwareTenda AC8 FirmwareTenda AC6 Firmware+47/8/202317/6/2026
Tenda AC10 V1.0 V15.03.06.23, AC1206 V15.03.06.23, AC8 v4 V16.03.34.06, AC6 V2.0 V15.03.06.23, AC7 V1.0 V15.03.06.44, F1203 V2.0.1.6, AC5 V1.0 V15.03.06.28, AC10 v4.0 V16.03.10.13 and FH1203 V2.0.1.6 were discovered to contain a stack overflow via the list parameter in the setaccount function.
ModificadaCrítica (9.8)0.84%—Tenda AC7 FirmwareTenda F1203 FirmwareTenda Fh1205 FirmwareTenda AC5 Firmware+17/8/202317/6/2026
Tenda AC7 V1.0,V15.03.06.44, F1203 V2.0.1.6, AC5 V1.0,V15.03.06.28, AC9 V3.0,V15.03.06.42_multi and FH1205 V2.0.0.7(775) were discovered to contain a stack overflow via the deviceId parameter in the addWifiMacFilter function.
ModificadaCrítica (9.8)0.93%—Tenda F1202 FirmwareTenda Fh1202 FirmwareTenda Ac10 FirmwareTenda Ac1206 Firmware+314/7/202317/6/2026
Tenda F1202 V1.0BR_V1.2.0.20(408) and FH1202_V1.2.0.19_EN, AC10 V1.0, AC1206 V1.0, AC7 V1.0, AC5 V1.0, and AC9 V3.0 were discovered to contain a stack overflow in the page parameter in the function fromDhcpListClient.
ModificadaCrítica (9.8)0.93%—Tenda F1202 FirmwareTenda Fh1202 FirmwareTenda Ac10 FirmwareTenda Ac1206 Firmware+314/7/202317/6/2026
Tenda F1202 V1.0BR_V1.2.0.20(408) and FH1202_V1.2.0.19_EN, AC10 V1.0, AC1206 V1.0, AC7 V1.0, AC5 V1.0, and AC9 V3.0 were discovered to contain a stack overflow in the page parameter in the function fromNatStaticSetting.
ModificadaCrítica (9.8)0.93%—Tenda F1202 FirmwareTenda Fh1202 FirmwareTenda AC7 FirmwareTenda Pw201a Firmware14/7/202317/6/2026
Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow in the page parameter in the function fromRouteStatic.
ModificadaCrítica (9.8)3.8%—Dell Idrac7 FirmwareDell Idrac8 FirmwareDell Idrac9 Firmware31/3/202017/6/2026
Dell EMC iDRAC7, iDRAC8 and iDRAC9 versions prior to 2.65.65.65, 2.70.70.70, 4.00.00.00 contain a stack-based buffer overflow vulnerability. An unauthenticated remote attacker may exploit this vulnerability to crash the affected process or execute arbitrary code on the system by sending specially crafted input data.
ModificadaMedia (4.3)0.88%—Dell Idrac7 FirmwareDell Idrac8 FirmwareDell Idrac9 Firmware7/11/201917/6/2026
Dell EMC iDRAC7 versions prior to 2.65.65.65, iDRAC8 versions prior to 2.70.70.70 and iDRAC9 versions prior to 3.36.36.36 contain an improper authorization vulnerability. A remote authenticated malicious iDRAC user with low privileges may potentially exploit this vulnerability to obtain sensitive information such as…
ModificadaCrítica (9.8)4.2%—Dell Idrac6 FirmwareDell Idrac7 FirmwareDell Idrac8 FirmwareDell Idrac9 Firmware26/4/201917/6/2026
Dell EMC iDRAC6 versions prior to 2.92, iDRAC7/iDRAC8 versions prior to 2.61.60.60, and iDRAC9 versions prior to 3.20.21.20, 3.21.24.22, 3.21.26.22 and 3.23.23.23 contain a stack-based buffer overflow vulnerability. An unauthenticated remote attacker may potentially exploit this vulnerability to crash the webserver or…
ModificadaAlta (7.5)1.4%—Tenda AC7 FirmwareTenda AC9 FirmwareTenda Ac10 Firmware25/4/201917/6/2026
An issue was discovered on Tenda AC7 devices with firmware through V15.03.06.44_CN(AC7), AC9 devices with firmware through V15.03.05.19(6318)_CN(AC9), and AC10 devices with firmware through V15.03.06.23_CN(AC10). A buffer overflow vulnerability exists in the router's web server (httpd). When processing the list…
ModificadaAlta (7.5)1.4%—Tenda AC7 FirmwareTenda AC9 FirmwareTenda Ac10 Firmware25/4/201917/6/2026
An issue was discovered on Tenda AC7 devices with firmware through V15.03.06.44_CN(AC7), AC9 devices with firmware through V15.03.05.19(6318)_CN(AC9), and AC10 devices with firmware through V15.03.06.23_CN(AC10). A buffer overflow vulnerability exists in the router's web server (httpd). When processing the page…
ModificadaMedia (6.8)0.42%—Dell Idrac7 FirmwareDell Idrac8 Firmware13/12/201817/6/2026
Dell EMC iDRAC7/iDRAC8 versions prior to 2.61.60.60 contain an improper error handling vulnerability. An unauthenticated attacker with physical access to the system could potentially exploit this vulnerability to get access to the u-boot shell.
ModificadaAlta (8.8)0.94%—Dell Idrac7 FirmwareDell Idrac8 FirmwareDell Idrac9 Firmware13/12/201817/6/2026
Dell EMC iDRAC7/iDRAC8 versions prior to 2.61.60.60 and iDRAC9 versions prior to 3.20.21.20, 3.21.24.22, 3.21.26.22, and 3.23.23.23 contain a privilege escalation vulnerability. An authenticated malicious iDRAC user with operator privileges could potentially exploit a permissions check flaw in the Redfish interface to…
AnalizadaCrítica (9.8)8.7%⚠ Explotación activaTenda AC7 FirmwareTenda AC9 FirmwareTenda Ac10 Firmware30/10/201817/6/2026
An issue was discovered on Tenda AC7 devices with firmware through V15.03.06.44_CN(AC7), AC9 devices with firmware through V15.03.05.19(6318)_CN(AC9), and AC10 devices with firmware through V15.03.06.23_CN(AC10). A command Injection vulnerability allows attackers to execute arbitrary OS commands via a crafted…
ModificadaAlta (7.5)1.1%—Tenda AC7 FirmwareTenda AC9 FirmwareTenda Ac10 FirmwareTenda Ac15 Firmware+129/10/201817/6/2026
An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05.19(6318)_CN devices. There is a buffer overflow vulnerability in the router's web server -- httpd. While processing the 'ntpServer' parameter for a post request, the value is…
ModificadaAlta (7.5)1.1%—Tenda AC7 FirmwareTenda AC9 FirmwareTenda Ac10 FirmwareTenda Ac15 Firmware+129/10/201817/6/2026
An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05.19(6318)_CN devices. There is a buffer overflow vulnerability in the router's web server -- httpd. While processing the 'deviceMac' parameter for a post request, the value is…
ModificadaAlta (7.5)1.1%—Tenda AC7 FirmwareTenda AC9 FirmwareTenda Ac10 FirmwareTenda Ac15 Firmware+129/10/201817/6/2026
An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05.19(6318)_CN devices. There is a buffer overflow vulnerability in the router's web server -- httpd. While processing the 'startIp' and 'endIp' parameters for a post request,…
ModificadaCrítica (9.8)1.3%—Tenda AC7 FirmwareTenda AC9 FirmwareTenda Ac10 FirmwareTenda Ac15 Firmware+129/10/201817/6/2026
An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05.19(6318)_CN devices. There is a heap-based buffer overflow vulnerability in the router's web server -- httpd. While processing the 'mac' parameter for a post request, the…
ModificadaAlta (7.5)1.1%—Tenda AC7 FirmwareTenda AC9 FirmwareTenda Ac10 FirmwareTenda Ac15 Firmware+129/10/201817/6/2026
An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05.19(6318)_CN devices. There is a buffer overflow vulnerability in the router's web server -- httpd. While processing the 'deviceList' parameter for a post request, the value is…
ModificadaAlta (7.5)1.1%—Tenda AC7 FirmwareTenda AC9 FirmwareTenda Ac10 FirmwareTenda Ac15 Firmware+129/10/201817/6/2026
An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05.19(6318)_CN devices. It is a buffer overflow vulnerability in the router's web server -- httpd. When processing the "firewallEn" parameter for a post request, the value is…
ModificadaAlta (7.5)1.4%—Tenda AC7 FirmwareTenda AC9 FirmwareTenda Ac10 FirmwareTenda Ac15 Firmware+129/10/201817/6/2026
An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05.19(6318)_CN devices. It is a buffer overflow vulnerability in the router's web server -- httpd. When processing the "page" parameter of the function "fromAddressNat" for a…
Orbitaley — Vulnerabilidades