Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2566▼ 354 respecto a la semana anterior
Críticas / altas1319▲ 46 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)76▼ 451 respecto a la semana anterior
11 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Baja (2.1) | 0.59% | — | Tenda A18 Firmware | 22/2/2026 | 17/6/2026 | A vulnerability was identified in Tenda A18 15.13.07.13. The affected element is the function webCgiGetUploadFile of the file /cgi-bin/UploadCfg of the component Httpd Service. Such manipulation of the argument boundary leads to stack-based buffer overflow. The attack can be executed remotely. The exploit is publicly… | |
| Analizada | Alta (7.4) | 0.96% | — | Tenda A18 Firmware | 21/2/2026 | 17/6/2026 | A vulnerability has been found in Tenda A18 15.13.07.13. This affects the function strcpy of the file /goform/WifiExtraSet of the component Httpd Service. The manipulation of the argument wpapsk_crypto5g leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been… | |
| Analizada | Alta (7.4) | 0.96% | — | Tenda A18 Firmware | 21/2/2026 | 17/6/2026 | A vulnerability was determined in Tenda A18 15.13.07.13. This affects the function parse_macfilter_rule of the file /goform/setBlackRule. This manipulation of the argument deviceList causes stack-based buffer overflow. The attack may be initiated remotely. The exploit has been publicly disclosed and may be utilized. | |
| Analizada | Alta (7.1) | 1.2% | — | Tenda A18 Firmware | 30/1/2025 | 17/6/2026 | A vulnerability was found in Tenda A18 up to 15.13.07.09. It has been rated as critical. This issue affects the function SetCmdlineRun of the file /goform/SetCmdlineRun of the component HTTP POST Request Handler. The manipulation of the argument wpapsk_crypto5g leads to stack-based buffer overflow. The attack may be… | |
| Analizada | Alta (8.8) | 0.61% | — | Tenda A18 Firmware | 17/4/2024 | 17/6/2026 | Tenda A18 v15.03.05.05 firmware has a stack overflow vulnerability located via the PPW parameter in the fromWizardHandle function. | |
| Modificada | Crítica (9.8) | 0.70% | — | Tenda A18 Firmware | 9/1/2024 | 17/6/2026 | Tenda A18 v15.13.07.09 was discovered to contain a stack overflow via the devName parameter in the formSetDeviceName function. | |
| Modificada | Alta (7.5) | 0.81% | — | Tenda A18 Firmware | 14/8/2023 | 17/6/2026 | Tenda A18 V15.13.07.09 was discovered to contain a stack overflow via the wpapsk_crypto2_4g parameter in the fromSetWirelessRepeat function. | |
| Modificada | Alta (7.5) | 0.81% | — | Tenda A18 Firmware | 14/8/2023 | 17/6/2026 | Tenda A18 V15.13.07.09 was discovered to contain a stack overflow via the security parameter in the formWifiBasicSet function. | |
| Modificada | Alta (7.5) | 0.81% | — | Tenda A18 Firmware | 14/8/2023 | 17/6/2026 | Tenda A18 V15.13.07.09 was discovered to contain a stack overflow via the rule_info parameter in the formAddMacfilterRule function. | |
| Modificada | Alta (7.5) | 0.68% | — | Tenda A18 Firmware | 8/12/2022 | 17/6/2026 | An access control issue in Tenda A18 v15.13.07.09 allows unauthenticated attackers to access the Telnet service. | |
| Modificada | Alta (7.5) | 0.88% | — | Tenda A18 Firmware | 8/12/2022 | 17/6/2026 | Tenda A18 v15.13.07.09 was discovered to contain a stack overflow via the security_5g parameter at /goform/WifiBasicSet. |