VendorsTendaw6-s_firmwareall versions
Vulnerabilities

Tenda W6-s Firmware

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

10CVEs
CVE-2025-15255
Tenda W6-S R7websSsecurityHandler httpd stack-based overflow
Published 2025-12-30 · Modified
10.0EPSS 0.047
CVE-2022-45497
Tenda W6-S v1.0.0.4(510) was discovered to contain a command injection vulnerability in the tpi_get_ping_output function at /goform/exeCommand.
Published 2022-12-08 · Modified
9.8EPSS 0.025
CVE-2025-15254
Tenda W6-S ATE Service ate TendaAte os command injection
Published 2025-12-30 · Modified
8.8EPSS 0.037
CVE-2022-45504
An issue in the component tpi_systool_handle(0) (/goform/SysToolRestoreSet) of Tenda W6-S v1.0.0.4(510) allows unauthenticated attackers to arbitrarily reboot the device.
Published 2022-12-08 · Modified
7.5EPSS 0.183
CVE-2022-45499
Tenda W6-S v1.0.0.4(510) was discovered to contain a stack overflow via the wl_radio parameter at /goform/WifiMacFilterGet.
Published 2022-12-08 · Modified
7.5EPSS 0.009
CVE-2022-45501
Tenda W6-S v1.0.0.4(510) was discovered to contain a stack overflow via the wl_radio parameter at /goform/wifiSSIDset.
Published 2022-12-08 · Modified
7.5EPSS 0.009
CVE-2022-45503
Tenda W6-S v1.0.0.4(510) was discovered to contain a stack overflow via the linkEn parameter at /goform/setAutoPing.
Published 2022-12-08 · Modified
7.5EPSS 0.009
CVE-2022-45498
An issue in the component tpi_systool_handle(0) (/goform/SysToolReboot) of Tenda W6-S v1.0.0.4(510) allows unauthenticated attackers to arbitrarily reboot the device.
Published 2022-12-08 · Modified
7.5EPSS 0.008
CVE-2025-28220
Tenda W6_S v1.0.0.4_510 has a Buffer Overflow vulnerability in the setcfm function, which allows remote attackers to cause web server crash via parameter funcpara1 passed to the binary through a POST request.
Published 2025-03-28 · Analyzed
7.5EPSS 0.005
CVE-2025-28221
Tenda W6_S v1.0.0.4_510 has a Buffer Overflow vulnerability in the set_local_time function, which allows remote attackers to cause web server crash via parameter time passed to the binary through a POST request.
Published 2025-03-28 · Analyzed
7.5EPSS 0.005