Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2860▼ 165 respecto a la semana anterior
Críticas / altas1382▲ 50 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)272▼ 254 respecto a la semana anterior
17 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (7.4) | 1.1% | — | Tenda I22 Firmware | 21/8/2025 | 17/6/2026 | A vulnerability was detected in Tenda i22 1.0.0.3(4687). This impacts the function formWeixinAuthInfoGet of the file /goform/wxportalauth. Performing manipulation of the argument Type results in stack-based buffer overflow. The attack can be initiated remotely. The exploit is now public and may be used. | |
| Analizada | Alta (7.1) | 0.88% | — | Tenda I22 Firmware | 4/11/2024 | 17/6/2026 | A vulnerability has been found in Tenda i22 1.0.0.3(4687) and classified as problematic. Affected by this vulnerability is the function websReadEvent of the file /goform/GetIPTV?fgHPOST/goform/SysToo. The manipulation of the argument Content-Length leads to null pointer dereference. The attack can be launched… | |
| Analizada | Alta (8.7) | 1.3% | — | Tenda I22 Firmware | 7/8/2024 | 17/6/2026 | A vulnerability has been found in Tenda i22 1.0.0.3(4687) and classified as critical. Affected by this vulnerability is the function formApPortalWebAuth of the file /goform/apPortalAuth. The manipulation of the argument webUserName/webUserPassword leads to buffer overflow. The attack can be launched remotely. The… | |
| Analizada | Alta (8.7) | 1.3% | — | Tenda I22 Firmware | 7/8/2024 | 17/6/2026 | A vulnerability, which was classified as critical, was found in Tenda i22 1.0.0.3(4687). Affected is the function formApPortalPhoneAuth of the file /goform/apPortalPhoneAuth. The manipulation of the argument data leads to buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to… | |
| Analizada | Alta (8.7) | 1.4% | — | Tenda I22 Firmware | 7/8/2024 | 17/6/2026 | A vulnerability, which was classified as critical, has been found in Tenda i22 1.0.0.3(4687). This issue affects the function formApPortalOneKeyAuth of the file /goform/apPortalOneKeyAuth. The manipulation of the argument data leads to buffer overflow. The attack may be initiated remotely. The exploit has been… | |
| Analizada | Alta (8.7) | 1.4% | — | Tenda I22 Firmware | 7/8/2024 | 17/6/2026 | A vulnerability classified as critical was found in Tenda i22 1.0.0.3(4687). This vulnerability affects the function formApPortalAccessCodeAuth of the file /goform/apPortalAccessCodeAuth. The manipulation of the argument accessCode/data/acceInfo leads to buffer overflow. The attack can be initiated remotely. The… | |
| Analizada | Alta (8.8) | 1.5% | — | Tenda I22 Firmware | 27/4/2024 | 17/6/2026 | A vulnerability classified as critical has been found in Tenda i22 1.0.0.3(4687). This affects the function formSetUrlFilterRule. The manipulation of the argument groupIndex leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The associated identifier of this vulnerability is… | |
| Modificada | Alta (7.5) | 0.82% | — | Tenda I22 Firmware | 20/12/2022 | 17/6/2026 | Tenda i22 V1.0.0.3(4687) was discovered to contain a buffer overflow via the list parameter in the formwrlSSIDset function. | |
| Modificada | Alta (7.5) | 0.82% | — | Tenda I22 Firmware | 20/12/2022 | 17/6/2026 | Tenda i22 V1.0.0.3(4687) was discovered to contain a buffer overflow via the funcpara1 parameter in the formSetCfm function. | |
| Modificada | Alta (7.5) | 9.1% | — | Tenda I22 Firmware | 2/12/2022 | 17/6/2026 | Tenda i22 V1.0.0.3(4687) was discovered to contain a buffer overflow via the formWx3AuthorizeSet function. | |
| Modificada | Alta (7.5) | 0.85% | — | Tenda I22 Firmware | 2/12/2022 | 17/6/2026 | Tenda i22 V1.0.0.3(4687) was discovered to contain a buffer overflow via the appData parameter in the formSetAppFilterRule function. | |
| Modificada | Alta (7.5) | 0.85% | — | Tenda I22 Firmware | 2/12/2022 | 17/6/2026 | Tenda i22 V1.0.0.3(4687) was discovered to contain a buffer overflow via the ping1 parameter in the formSetAutoPing function. | |
| Modificada | Alta (7.5) | 0.85% | — | Tenda I22 Firmware | 2/12/2022 | 17/6/2026 | Tenda i22 V1.0.0.3(4687) was discovered to contain a buffer overflow via the index parameter in the formWifiMacFilterGet function. | |
| Modificada | Media (6.5) | 0.34% | — | Tenda I22 Firmware | 2/12/2022 | 17/6/2026 | Tenda i22 V1.0.0.3(4687) is vulnerable to Cross Site Request Forgery (CSRF) via function fromSysToolReboot. | |
| Modificada | Media (6.5) | 0.34% | — | Tenda I22 Firmware | 2/12/2022 | 17/6/2026 | Tenda i22 V1.0.0.3(4687) is vulnerable to Cross Site Request Forgery (CSRF) via function fromSysToolRestoreSet. | |
| Modificada | Alta (7.5) | 0.85% | — | Tenda I22 Firmware | 2/12/2022 | 17/6/2026 | Tenda i22 V1.0.0.3(4687) was discovered to contain a buffer overflow via the list parameter in the formwrlSSIDget function. | |
| Modificada | Alta (7.5) | 0.85% | — | Tenda I22 Firmware | 2/12/2022 | 17/6/2026 | Tenda i22 V1.0.0.3(4687) was discovered to contain a buffer overflow via the index parameter in the formWifiMacFilterSet function. |