Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2952▲ 10 respecto a la semana anterior
Críticas / altas1451▲ 185 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)272▼ 254 respecto a la semana anterior
8 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Baja (2) | 4.7% | — | Tenda CP3 Firmware | 6/6/2025 | 17/6/2026 | A vulnerability has been found in Tenda CP3 11.10.00.2311090948 and classified as critical. Affected by this vulnerability is the function sub_F3C8C of the file apollo. The manipulation leads to command injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. | |
| Modificada | Media (5.5) | 0.21% | — | Tendacn CP3 Firmware | 7/2/2024 | 17/6/2026 | An issue in Shenzen Tenda Technology CP3V2.0 V11.10.00.2311090948 allows a local attacker to obtain sensitive information via the password component. | |
| Modificada | Alta (7.5) | 0.27% | — | Tenda CP3 Firmware | 10/5/2023 | 17/6/2026 | Missing Support for an Integrity Check in Shenzen Tenda Technology IP Camera CP3 V11.10.00.2211041355 allows attackers to update the device with crafted firmware | |
| Modificada | Crítica (9.8) | 0.45% | — | Tenda CP3 Firmware | 10/5/2023 | 17/6/2026 | Shenzen Tenda Technology IP Camera CP3 V11.10.00.2211041355 does not defend against physical access to U-Boot via the UART: the Wi-Fi password is shown, and the hardcoded boot password can be inserted for console access. | |
| Modificada | Crítica (9.8) | 1.2% | — | Tenda CP3 Firmware | 10/5/2023 | 17/6/2026 | Shenzen Tenda Technology IP Camera CP3 V11.10.00.2211041355 allows unauthenticated remote code execution via an XML document. | |
| Modificada | Crítica (9.8) | 0.66% | — | Tenda CP3 Firmware | 10/5/2023 | 17/6/2026 | Shenzen Tenda Technology IP Camera CP3 V11.10.00.2211041355 was discovered to contain a hard-coded default password for the RTSP feed. | |
| Modificada | Alta (7.5) | 0.24% | — | Tenda CP3 Firmware | 10/5/2023 | 17/6/2026 | Shenzen Tenda Technology IP Camera CP3 V11.10.00.2211041355 was discovered to contain a hard-coded default password for root which is stored using weak encryption. This vulnerability allows attackers to connect to the TELNET service (or UART) by using the exposed credentials. | |
| Modificada | Crítica (9.8) | 2.5% | — | Tenda It7-lcs FirmwareTenda It7-pcs FirmwareTenda It7-prs FirmwareTenda CP3 Firmware+1 | 27/2/2023 | 17/6/2026 | Certain Tenda products are vulnerable to command injection. This affects Tenda CP7 Tenda CP7<=V11.10.00.2211041403 and Tenda CP3 v.10 Tenda CP3 v.10<=V20220906024_2025 and Tenda IT7-PCS Tenda IT7-PCS<=V2209020914 and Tenda IT7-LCS Tenda IT7-LCS<=V2209020914 and Tenda IT7-PRS Tenda IT7-PRS<=V2209020908. |