VendorsTendaax1806any version
Vulnerabilities

Tenda AX1806 any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

61CVEs
CVE-2022-32032
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the deviceList parameter in the function formAddMacfilterRule.
Published 2022-07-01 · Modified
10.0EPSS 0.104
CVE-2022-34597
Tenda AX1806 v1.0.0.1 was discovered to contain a command injection vulnerability via the function WanParameterSetting.
Published 2022-07-06 · Modified
9.8EPSS 0.023
CVE-2024-44555
Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.city.vlan parameter in the function setIptvInfo.
Published 2024-08-26 · Analyzed
9.8EPSS 0.007
CVE-2024-44558
Tenda AX1806 v1.0.0.1 contains a stack overflow via the adv.iptv.stbpvid parameter in the function setIptvInfo.
Published 2024-08-26 · Analyzed
9.8EPSS 0.006
CVE-2024-44553
Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.stb.mode parameter in the function formGetIptv.
Published 2024-08-26 · Analyzed
9.8EPSS 0.006
CVE-2024-44551
Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.city.vlan parameter in the function formGetIptv.
Published 2024-08-26 · Modified
9.8EPSS 0.006
CVE-2024-44550
Tenda AX1806 v1.0.0.1 contains a stack overflow via the adv.iptv.stbpvid parameter in the function formGetIptv.
Published 2024-08-26 · Analyzed
9.8EPSS 0.006
CVE-2024-44557
Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.stb.mode parameter in the function setIptvInfo.
Published 2024-08-26 · Analyzed
9.8EPSS 0.006
CVE-2024-44565
Tenda AX1806 v1.0.0.1 contains a stack overflow via the serverName parameter in the function form_fast_setting_internet_set.
Published 2024-08-26 · Analyzed
9.8EPSS 0.006
CVE-2024-44563
Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.stb.port parameter in the function setIptvInfo.
Published 2024-08-26 · Analyzed
9.8EPSS 0.006
CVE-2024-40416
A vulnerability in /goform/SetVirtualServerCfg in the sub_6320C function in Tenda AX1806 1.0.0.1 firmware leads to stack-based buffer overflow.
Published 2024-07-15 · Modified
9.8EPSS 0.006
CVE-2024-35571
Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.stb.mode parameter in the function formSetIptv.
Published 2024-05-20 · Analyzed
9.8EPSS 0.006
CVE-2024-35580
Tenda AX1806 v1.0.0.1 contains a stack overflow via the adv.iptv.stbpvid parameter in the function formSetIptv.
Published 2024-05-20 · Analyzed
9.8EPSS 0.006
CVE-2024-40415
A vulnerability in /goform/SetStaticRouteCfg in the sub_519F4 function in Tenda AX1806 1.0.0.1 firmware leads to stack-based buffer overflow.
Published 2024-07-15 · Modified
9.8EPSS 0.005
CVE-2024-40414
A vulnerability in /goform/SetNetControlList in the sub_656BC function in Tenda AX1806 1.0.0.1 firmware leads to stack-based buffer overflow.
Published 2024-07-15 · Modified
9.8EPSS 0.005
CVE-2024-44549
Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.stb.port parameter in the function formGetIptv.
Published 2024-08-26 · Analyzed
9.8EPSS 0.004
CVE-2024-44556
Tenda AX1806 v1.0.0.1 contains a stack overflow via the adv.iptv.stballvlans parameter in the function setIptvInfo.
Published 2024-08-26 · Analyzed
9.8EPSS 0.004
CVE-2024-44552
Tenda AX1806 v1.0.0.1 contains a stack overflow via the adv.iptv.stballvlans parameter in the function formGetIptv.
Published 2024-08-26 · Modified
9.8EPSS 0.004
CVE-2023-47455
Tenda AX1806 V1.0.0.1 contains a heap overflow vulnerability in setSchedWifi function, in which the src and v12 are directly obtained from http request parameter schedStartTime and schedEndTime without checking their size.
Published 2023-11-07 · Modified
9.1EPSS 0.008
CVE-2023-47456
Tenda AX1806 V1.0.0.1 contains a stack overflow vulnerability in function sub_455D4, called by function fromSetWirelessRepeat.
Published 2023-11-07 · Modified
9.1EPSS 0.008
CVE-2024-4238
Tenda AX1806 SetOnlineDevName formSetDeviceName stack-based overflow
Published 2024-04-26 · Analyzed
9.0EPSS 0.015
CVE-2024-4237
Tenda AX1806 execCommand R7WebsSecurityHandler stack-based overflow
Published 2024-04-26 · Analyzed
9.0EPSS 0.015
CVE-2024-4239
Tenda AX1806 SetRebootTimer formSetRebootTimer stack-based overflow
Published 2024-04-26 · Analyzed
9.0EPSS 0.015
CVE-2022-28572
Tenda AX1806 v1.0.0.1 was discovered to contain a command injection vulnerability in `SetIPv6Status` function
Published 2022-05-02 · Modified
8.8EPSS 0.026
CVE-2024-35578
Tenda AX1806 v1.0.0.1 contains a stack overflow via the adv.iptv.stballvlans parameter in the function formSetIptv.
Published 2024-05-20 · Analyzed
8.0EPSS 0.004
CVE-2022-25546
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function formSetSysToolDDNS. This vulnerability allows attackers to cause a Denial of Service (DoS) via the ddnsUser parameter.
Published 2022-03-09 · Modified
7.8EPSS 0.123
CVE-2022-25547
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function fromSetSysTime. This vulnerability allows attackers to cause a Denial of Service (DoS) via the time parameter.
Published 2022-03-09 · Modified
7.8EPSS 0.088
CVE-2022-25549
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function formSetSysToolDDNS. This vulnerability allows attackers to cause a Denial of Service (DoS) via the ddnsEn parameter.
Published 2022-03-09 · Modified
7.8EPSS 0.012
CVE-2022-25553
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function formSetSysToolDDNS. This vulnerability allows attackers to cause a Denial of Service (DoS) via the ddnsPwd parameter.
Published 2022-03-09 · Modified
7.8EPSS 0.012
CVE-2022-25554
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function saveParentControlInfo. This vulnerability allows attackers to cause a Denial of Service (DoS) via the deviceId parameter.
Published 2022-03-09 · Modified
7.8EPSS 0.012
CVE-2022-25555
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function fromSetSysTime. This vulnerability allows attackers to cause a Denial of Service (DoS) via the ntpServer parameter.
Published 2022-03-09 · Modified
7.8EPSS 0.012
CVE-2022-25550
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function saveParentControlInfo. This vulnerability allows attackers to cause a Denial of Service (DoS) via the deviceName parameter.
Published 2022-03-09 · Modified
7.8EPSS 0.012
CVE-2022-25557
Tenda AX1806 v1.0.0.1 was discovered to contain a heap overflow in the function saveParentControlInfo. This vulnerability allows attackers to cause a Denial of Service (DoS) via the urls parameter.
Published 2022-03-09 · Modified
7.8EPSS 0.012
CVE-2022-25558
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function formSetProvince. This vulnerability allows attackers to cause a Denial of Service (DoS) via the ProvinceCode parameter.
Published 2022-03-09 · Modified
7.8EPSS 0.012
CVE-2022-25551
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function formSetSysToolDDNS. This vulnerability allows attackers to cause a Denial of Service (DoS) via the ddnsDomain parameter.
Published 2022-03-09 · Modified
7.8EPSS 0.012
CVE-2022-25566
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function saveParentControlInfo. This vulnerability allows attackers to cause a Denial of Service (DoS) via the time parameter.
Published 2022-03-09 · Modified
7.8EPSS 0.012
CVE-2022-25552
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function form_fast_setting_wifi_set. This vulnerability allows attackers to cause a Denial of Service (DoS) via the ssid parameter.
Published 2022-03-09 · Modified
7.8EPSS 0.012
CVE-2022-25548
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function fromSetSysTime. This vulnerability allows attackers to cause a Denial of Service (DoS) via the serverName parameter.
Published 2022-03-09 · Modified
7.8EPSS 0.012
CVE-2022-28970
Tenda AX1806 v1.0.0.1 was discovered to contain a heap overflow via the mac parameter in the function GetParentControlInfo. This vulnerability allows attackers to cause a Denial of Service (DoS).
Published 2022-05-06 · Modified
7.8EPSS 0.012
CVE-2022-28971
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the list parameter in the function fromSetIpMacBind. This vulnerability allows attackers to cause a Denial of Service (DoS).
Published 2022-05-06 · Modified
7.8EPSS 0.012
1 / 2Next →