Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2560▼ 348 respecto a la semana anterior
Críticas / altas1335▲ 66 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)93▼ 434 respecto a la semana anterior
17 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (7.4) | 0.87% | — | Tenda RX3 Firmware | 8/2/2026 | 17/6/2026 | A vulnerability was found in Tenda RX3 16.03.13.11. The affected element is the function set_qosMib_list of the file /goform/formSetQosBand. Performing a manipulation of the argument list results in stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been made public and could… | |
| Analizada | Alta (7.4) | 0.87% | — | Tenda RX3 Firmware | 8/2/2026 | 17/6/2026 | A vulnerability has been found in Tenda RX3 16.03.13.11. Impacted is the function fromSetIpMacBind of the file /goform/SetIpMacBind. Such manipulation of the argument list leads to stack-based buffer overflow. The attack may be performed from remote. The exploit has been disclosed to the public and may be used. | |
| Analizada | Alta (7.4) | 0.71% | — | Tenda RX3 Firmware | 8/2/2026 | 17/6/2026 | A flaw has been found in Tenda RX3 16.03.13.11. This issue affects the function set_device_name of the file /goform/setBlackRule of the component MAC Filtering Configuration Endpoint. This manipulation of the argument devName/mac causes stack-based buffer overflow. The attack is possible to be carried out remotely.… | |
| Analizada | Alta (7.4) | 0.61% | — | Tenda RX3 Firmware | 8/2/2026 | 17/6/2026 | A security flaw has been discovered in Tenda RX3 16.03.13.11. Affected by this vulnerability is an unknown functionality of the file /goform/openSchedWifi. Performing a manipulation of the argument schedStartTime/schedEndTime results in stack-based buffer overflow. The attack may be initiated remotely. The exploit has… | |
| Analizada | Alta (7.4) | 0.59% | — | Tenda RX3 Firmware | 8/2/2026 | 17/6/2026 | A vulnerability was identified in Tenda RX3 16.03.13.11. Affected is an unknown function of the file /goform/fast_setting_wifi_set. Such manipulation of the argument ssid_5g leads to stack-based buffer overflow. The attack can be launched remotely. The exploit is publicly available and might be used. | |
| Analizada | Alta (8.7) | 12% | — | Tenda RX3 Firmware | 3/6/2025 | 17/6/2026 | A vulnerability was found in Tenda RX3 16.03.13.11_multi_TDE01. It has been rated as critical. This issue affects the function save_staticroute_data of the file /goform/SetStaticRouteCfg. The manipulation of the argument list leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has… | |
| Analizada | Crítica (9.8) | 0.46% | — | Tenda RX3 Firmware | 6/5/2025 | 17/6/2026 | There is a stack overflow vulnerability in Tenda RX3 V1.0br_V16.03.13.11 In the fromSetWifiGusetBasic function of the web url /goform/ WifiGuestSet, the manipulation of the parameter shareSpeed leads to stack overflow. | |
| Analizada | Media (6.5) | 0.27% | — | Tenda RX3 Firmware | 6/5/2025 | 17/6/2026 | In Tenda RX3 V1.0br_V16.03.13.11 in the GetParentControlInfo function of the web url /goform/GetParentControlInfo, the manipulation of the parameter mac leads to stack overflow. | |
| Analizada | Media (5.1) | 16% | — | Tenda RX3 Firmware | 6/5/2025 | 17/6/2026 | A vulnerability was found in Tenda RX3 16.03.13.11_multi. It has been rated as critical. This issue affects some unknown processing of the file /goform/telnet. The manipulation leads to command injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. | |
| Analizada | Alta (8.7) | 1.1% | — | Tenda RX3 Firmware | 4/4/2025 | 17/6/2026 | A vulnerability, which was classified as critical, has been found in Tenda RX3 16.03.13.11. This issue affects the function formSetDeviceName of the file /goform/SetOnlineDevName. The manipulation of the argument devName leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been… | |
| Analizada | Alta (7.5) | 0.51% | — | Tenda RX3 Firmware | 13/3/2025 | 17/6/2026 | Tenda RX3 US_RX3V1.0br_V16.03.13.11_multi_TDE01 is vulnerable to buffer overflow via the schedStartTime and schedEndTime parameters at /goform/saveParentControlInfo. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted packet. | |
| Analizada | Alta (7.5) | 0.51% | — | Tenda RX3 Firmware | 13/3/2025 | 17/6/2026 | Tenda RX3 US_RX3V1.0br_V16.03.13.11_multi_TDE01 is vulnerable to Buffer Overflow via the list parameter at /goform/setPptpUserList. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted packet. | |
| Analizada | Alta (7.5) | 0.81% | — | Tenda RX3 Firmware | 13/3/2025 | 17/6/2026 | Tenda RX3 US_RX3V1.0br_V16.03.13.11_multi_TDE01 is vulnerable to Buffer Overflow via the list parameter at /goform/SetVirtualServerCfg. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted packet. | |
| Analizada | Alta (7.5) | 0.51% | — | Tenda RX3 Firmware | 13/3/2025 | 17/6/2026 | Tenda RX3 US_RX3V1.0br_V16.03.13.11_multi_TDE01 is vulnerable to Buffer Overflow via the time and timeZone parameters at /goform/SetSysTimeCfg. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted packet. | |
| Analizada | Alta (7.5) | 0.51% | — | Tenda RX3 Firmware | 13/3/2025 | 17/6/2026 | Tenda RX3 US_RX3V1.0br_V16.03.13.11_multi_TDE01 is vulnerable to Buffer Overflow via the deviceId parameter at /goform/saveParentControlInfo. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted packet. | |
| Analizada | Alta (7.5) | 0.81% | — | Tenda RX3 Firmware | 13/3/2025 | 17/6/2026 | Tenda RX3 US_RX3V1.0br_V16.03.13.11_multi_TDE01 is vulnerable to Buffer Overflow via the firewallEn parameter at /goform/SetFirewallCfg. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted packet. | |
| Analizada | Alta (7.5) | 0.51% | — | Tenda RX3 Firmware | 13/3/2025 | 17/6/2026 | Tenda RX3 US_RX3V1.0br_V16.03.13.11_multi_TDE01 is vulnerable to Buffer Overflow via the startIp and endIp parameters at /goform/SetPptpServerCfg. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted packet. |