Tenda
Tenda Fh451 Firmware: vulnerabilidades y CVE
Tenda Fh451 Firmware tiene 28 vulnerabilidades publicadas, 5 de ellas en los últimos 12 meses. 3 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE28
Últimos 12 meses5
Críticas3
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-4535 | Alta (7.4) | 1.0% | — | 22 mar 2026 | A vulnerability has been found in Tenda FH451 1.0.0.9. This vulnerability affects the function WrlclientSet of the file /goform/WrlclientSet. Such manipulation of the argument GO leads to stack-based buffer overflow.… |
| CVE-2026-4534 | Alta (7.4) | 1.0% | — | 22 mar 2026 | A flaw has been found in Tenda FH451 1.0.0.9. This affects the function formWrlExtraSet of the file /goform/WrlExtraSet. This manipulation of the argument GO causes stack-based buffer overflow. The attack can be… |
| CVE-2026-3678 | Alta (7.4) | 1.0% | — | 7 mar 2026 | A vulnerability was determined in Tenda FH451 1.0.0.9. Affected is the function sub_3C434 of the file /goform/AdvSetWan. This manipulation of the argument wanmode/PPPOEPassword causes stack-based buffer overflow. It is… |
| CVE-2026-3677 | Alta (7.4) | 1.0% | — | 7 mar 2026 | A vulnerability was found in Tenda FH451 1.0.0.9. This impacts the function fromSetCfm of the file /goform/setcfm. The manipulation of the argument funcname/funcpara1 results in stack-based buffer overflow. The attack… |
| CVE-2026-2911 | Alta (7.4) | 1.0% | — | 22 feb 2026 | A vulnerability has been found in Tenda FH451 up to 1.0.0.9. This issue affects some unknown processing of the file /goform/GstDhcpSetSer. The manipulation leads to buffer overflow. It is possible to initiate the attack… |
| CVE-2025-7855 | Alta (8.7) | 1.1% | — | 19 jul 2025 | A vulnerability classified as critical was found in Tenda FH451 1.0.0.9. Affected by this vulnerability is the function fromqossetting of the file /goform/qossetting. The manipulation of the argument page leads to… |
| CVE-2025-7854 | Alta (7.4) | 1.1% | — | 19 jul 2025 | A vulnerability classified as critical has been found in Tenda FH451 1.0.0.9. Affected is the function fromVirtualSer of the file /goform/VirtualSer. The manipulation of the argument page leads to stack-based buffer… |
| CVE-2025-7853 | Alta (7.4) | 0.85% | — | 19 jul 2025 | A vulnerability was found in Tenda FH451 1.0.0.9. It has been rated as critical. This issue affects the function fromSetIpBind of the file /goform/SetIpBind. The manipulation of the argument page leads to stack-based… |
| CVE-2025-7807 | Alta (7.4) | 0.86% | — | 18 jul 2025 | A vulnerability, which was classified as critical, has been found in Tenda FH451 1.0.0.9. This issue affects the function fromSafeUrlFilter of the file /goform/SafeUrlFilter. The manipulation of the argument Go/page… |
| CVE-2025-7806 | Alta (7.4) | 0.86% | — | 18 jul 2025 | A vulnerability classified as critical was found in Tenda FH451 1.0.0.9. This vulnerability affects the function fromSafeClientFilter of the file /goform/SafeClientFilter. The manipulation of the argument Go/page leads… |
| CVE-2025-7805 | Alta (7.4) | 0.86% | — | 18 jul 2025 | A vulnerability classified as critical has been found in Tenda FH451 1.0.0.9. This affects the function fromPptpUserSetting of the file /goform/PPTPUserSetting. The manipulation of the argument delno leads to… |
| CVE-2025-7796 | Alta (7.4) | 0.83% | — | 18 jul 2025 | A vulnerability, which was classified as critical, was found in Tenda FH451 1.0.0.9. This affects the function fromPptpUserAdd of the file /goform/PPTPDClient. The manipulation of the argument Username leads to… |
| CVE-2025-7795 | Alta (7.4) | 3.1% | — | 18 jul 2025 | A vulnerability, which was classified as critical, has been found in Tenda FH451 1.0.0.9. Affected by this issue is the function fromP2pListFilter of the file /goform/P2pListFilter. The manipulation of the argument page… |
| CVE-2025-7794 | Alta (7.4) | 1.1% | — | 18 jul 2025 | A vulnerability classified as critical was found in Tenda FH451 1.0.0.9. Affected by this vulnerability is the function fromNatStaticSetting of the file /goform/NatStaticSetting. The manipulation of the argument page… |
| CVE-2025-7793 | Alta (7.4) | 1.1% | — | 18 jul 2025 | A vulnerability classified as critical has been found in Tenda FH451 1.0.0.9. Affected is the function formWebTypeLibrary of the file /goform/webtypelibrary. The manipulation of the argument webSiteId leads to… |
| CVE-2025-7792 | Alta (7.4) | 1.1% | — | 18 jul 2025 | A vulnerability was found in Tenda FH451 1.0.0.9. It has been rated as critical. This issue affects the function formSafeEmailFilter of the file /goform/SafeEmailFilter. The manipulation of the argument page leads to… |
| CVE-2025-7747 | Alta (7.4) | 0.86% | — | 17 jul 2025 | A vulnerability classified as critical has been found in Tenda FH451 1.0.0.9. This affects the function fromWizardHandle of the file /goform/WizardHandle of the component POST Request Handler. The manipulation of the… |
| CVE-2025-7506 | Alta (7.4) | 0.94% | — | 12 jul 2025 | A vulnerability classified as critical was found in Tenda FH451 1.0.0.9. Affected by this vulnerability is the function fromNatlimit of the file /goform/Natlimit of the component HTTP POST Request Handler. The… |
| CVE-2025-7505 | Alta (7.4) | 0.94% | — | 12 jul 2025 | A vulnerability classified as critical has been found in Tenda FH451 1.0.0.9. Affected is the function frmL7ProtForm of the file /goform/L7Prot of the component HTTP POST Request Handler. The manipulation of the… |
| CVE-2025-7434 | Alta (7.4) | 0.91% | — | 11 jul 2025 | A vulnerability was found in Tenda FH451 up to 1.0.0.9 and classified as critical. Affected by this issue is the function fromAddressNat of the file /goform/addressNat of the component POST Request Handler. The… |
| CVE-2025-5080 | Alta (8.7) | 1.0% | — | 22 may 2025 | A vulnerability classified as critical has been found in Tenda FH451 1.0.0.9. Affected is the function webExcptypemanFilter of the file /goform/webExcptypemanFilter. The manipulation of the argument page leads to… |
| CVE-2025-44176 | Media (6.5) | 9.9% | — | 12 may 2025 | Tenda FH451 V1.0.0.9 is vulnerable to Remote Code Execution in the formSafeEmailFilter function. |
| CVE-2025-45513 | Crítica (9.8) | 0.53% | — | 9 may 2025 | Tenda FH451 V1.0.0.9 has a stack overflow vulnerability in the function.P2pListFilter. |
| CVE-2025-45514 | Media (6.5) | 0.30% | — | 7 may 2025 | Tenda FH451 V1.0.0.9 has a stack overflow vulnerability in the function.frmL7ImForm. |
| CVE-2024-12002 | Media (5.3) | 0.80% | — | 30 nov 2024 | A vulnerability classified as problematic was found in Tenda FH451, FH1201, FH1202 and FH1206 up to 20241129. Affected by this vulnerability is the function websReadEvent of the file /goform/GetIPTV. The manipulation of… |
| CVE-2024-46048 | Crítica (9.8) | 11% | — | 13 sept 2024 | Tenda FH451 v1.0.0.9 has a command injection vulnerability in the formexeCommand function i |
| CVE-2024-46047 | Alta (7.5) | 0.61% | — | 13 sept 2024 | Tenda FH451 v1.0.0.9 has a stack overflow vulnerability in the fromDhcpListClient function. |
| CVE-2024-46046 | Crítica (9.8) | 0.60% | — | 13 sept 2024 | Tenda FH451 v1.0.0.9 has a stack overflow vulnerability located in the RouteStatic function. |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.