Tenda
Tenda A15 Firmware: vulnerabilidades y CVE
Tenda A15 Firmware tiene 22 vulnerabilidades publicadas, 2 de ellas en los últimos 12 meses. 13 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE22
Últimos 12 meses2
Críticas13
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-4567 | Alta (8.9) | 1.3% | — | 23 mar 2026 | A vulnerability has been found in Tenda A15 15.13.07.13. The impacted element is the function UploadCfg of the file /cgi-bin/UploadCfg. The manipulation of the argument File leads to stack-based buffer overflow. The… |
| CVE-2025-12619 | Alta (7.4) | 0.80% | — | 3 nov 2025 | A vulnerability was found in Tenda A15 15.13.07.13. Affected is the function fromSetWirelessRepeat of the file /goform/openNetworkGateway. The manipulation of the argument wpapsk_crypto2_4g results in buffer overflow.… |
| CVE-2025-4897 | Alta (8.7) | 6.1% | — | 18 may 2025 | A vulnerability was found in Tenda A15 15.13.07.09/15.13.07.13. It has been classified as critical. This affects an unknown part of the file /goform/multimodalAdd of the component HTTP POST Request Handler. The… |
| CVE-2025-4867 | Alta (7.1) | 0.77% | — | 18 may 2025 | A vulnerability was found in Tenda A15 15.13.07.13. It has been declared as problematic. Affected by this vulnerability is the function formArpNerworkSet of the file /goform/ArpNerworkSet. The manipulation leads to… |
| CVE-2024-0534 | Alta (7.2) | 1.7% | — | 15 ene 2024 | A vulnerability classified as critical has been found in Tenda A15 15.13.07.13. Affected is an unknown function of the file /goform/SetOnlineDevName of the component Web-based Management Interface. The manipulation of… |
| CVE-2024-0533 | Alta (7.2) | 1.7% | — | 15 ene 2024 | A vulnerability was found in Tenda A15 15.13.07.13. It has been rated as critical. This issue affects some unknown processing of the file /goform/SetOnlineDevName of the component Web-based Management Interface. The… |
| CVE-2024-0532 | Alta (8.6) | 1.8% | — | 15 ene 2024 | A vulnerability was found in Tenda A15 15.13.07.13. It has been declared as critical. This vulnerability affects the function set_repeat5 of the file /goform/WifiExtraSet of the component Web-based Management Interface.… |
| CVE-2024-0531 | Alta (7.2) | 1.7% | — | 15 ene 2024 | A vulnerability was found in Tenda A15 15.13.07.13. It has been classified as critical. This affects an unknown part of the file /goform/setBlackRule of the component Web-based Management Interface. The manipulation of… |
| CVE-2022-47128 | Crítica (9.8) | 0.97% | — | 30 dic 2022 | Tenda A15 V15.13.07.13 was discovered to contain a stack overflow via the wepkey2 parameter at /goform/WifiBasicSet. |
| CVE-2022-47127 | Crítica (9.8) | 0.87% | — | 30 dic 2022 | Tenda A15 V15.13.07.13 was discovered to contain a stack overflow via the wrlPwd parameter at /goform/WifiBasicSet. |
| CVE-2022-47126 | Crítica (9.8) | 0.87% | — | 30 dic 2022 | Tenda A15 V15.13.07.13 was discovered to contain a stack overflow via the wrlEn parameter at /goform/WifiBasicSet. |
| CVE-2022-47125 | Crítica (9.8) | 0.87% | — | 30 dic 2022 | Tenda A15 V15.13.07.13 was discovered to contain a stack overflow via the wrlEn_5g parameter at /goform/WifiBasicSet. |
| CVE-2022-47124 | Crítica (9.8) | 0.87% | — | 30 dic 2022 | Tenda A15 V15.13.07.13 was discovered to contain a stack overflow via the wepkey4 parameter at /goform/WifiBasicSet. |
| CVE-2022-47123 | Crítica (9.8) | 0.97% | — | 30 dic 2022 | Tenda A15 V15.13.07.13 was discovered to contain a stack overflow via the wepkey3 parameter at /goform/WifiBasicSet. |
| CVE-2022-47122 | Crítica (9.8) | 0.87% | — | 30 dic 2022 | Tenda A15 V15.13.07.13 was discovered to contain a stack overflow via the wrlPwd_5g parameter at /goform/WifiBasicSet. |
| CVE-2022-47121 | Crítica (9.8) | 0.87% | — | 30 dic 2022 | Tenda A15 V15.13.07.13 was discovered to contain a stack overflow via the wepkey parameter at /goform/WifiBasicSet. |
| CVE-2022-47120 | Crítica (9.8) | 0.87% | — | 30 dic 2022 | Tenda A15 V15.13.07.13 was discovered to contain a stack overflow via the security_5g parameter at /goform/WifiBasicSet. |
| CVE-2022-47119 | Crítica (9.8) | 0.87% | — | 30 dic 2022 | Tenda A15 V15.13.07.13 was discovered to contain a stack overflow via the ssid parameter at /goform/WifiBasicSet. |
| CVE-2022-47118 | Crítica (9.8) | 0.87% | — | 30 dic 2022 | Tenda A15 V15.13.07.13 was discovered to contain a stack overflow via the wepkey1 parameter at /goform/WifiBasicSet. |
| CVE-2022-47117 | Crítica (9.8) | 0.87% | — | 30 dic 2022 | Tenda A15 V15.13.07.13 was discovered to contain a stack overflow via the security parameter at /goform/WifiBasicSet. |
| CVE-2022-47116 | Alta (7.5) | 0.78% | — | 30 dic 2022 | Tenda A15 V15.13.07.13 was discovered to contain a stack overflow via the SYSPS parameter at /goform/SysToolChangePwd. |
| CVE-2022-47115 | Crítica (9.8) | 0.87% | — | 30 dic 2022 | Tenda A15 V15.13.07.13 was discovered to contain a stack overflow via the wepauth parameter at /goform/WifiBasicSet. |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.