CVE-2021-44971
published 2022-01-28CVE-2021-44971: Multiple Tenda devices are affected by authentication bypass, such as AC15V1.0 Firmware V15.03.05.20_multi?AC5V1.0 Firmware V15.03.06.48_multi and so on. an…
PriorityP260critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
2.08%
79.3th percentile
Multiple Tenda devices are affected by authentication bypass, such as AC15V1.0 Firmware V15.03.05.20_multi?AC5V1.0 Firmware V15.03.06.48_multi and so on. an attacker can obtain sensitive information, and even combine it with authenticated command injection to implement RCE.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| tenda | ac15_firmware | — | — |
| tenda | ac15_firmware | — | — |
| tenda | ac5_firmware | — | — |
CVSS provenance
nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
Tenda AC15V1.0 15.03.05.20_multi/15.03.06.48_multi improper authentication
vuldb·2026-07-06·CVSS 9.8
CVE-2021-44971 [CRITICAL] Tenda AC15V1.0 15.03.05.20_multi/15.03.06.48_multi improper authentication
A vulnerability categorized as critical has been discovered in Tenda AC15V1.0 15.03.05.20_multi/15.03.06.48_multi. Impacted is an unknown function. Executing a manipulation can lead to improper authentication.
This vulnerability appears as CVE-2021-44971. The attack may be performed from remote. There is no available exploit.
GHSA
GHSA-942j-wgv7-6vhf: Tenda AC15 US_AC15V1
ghsa_unreviewed·2022-05-05·CVSS 9.8
CVE-2022-28556 [CRITICAL] CWE-770 GHSA-942j-wgv7-6vhf: Tenda AC15 US_AC15V1
Tenda AC15 US_AC15V1.0BR_V15.03.05.20_multi_TDE01.bin is vulnerable to Buffer Overflow. The stack overflow vulnerability lies in the /goform/setpptpservercfg interface of the web. The sent post data startip and endip are copied to the stack using the sanf function, resulting in stack overflow. Similarly, this vulnerability can be used together with CVE-2021-44971
GHSA
GHSA-hrqw-h4fg-w3j3: There is a command injection vulnerability at the /goform/setsambacfg interface of Tenda AC15 US_AC15V1
ghsa_unreviewed·2022-05-05·CVSS 9.8
CVE-2022-28557 [CRITICAL] CWE-77 GHSA-hrqw-h4fg-w3j3: There is a command injection vulnerability at the /goform/setsambacfg interface of Tenda AC15 US_AC15V1
There is a command injection vulnerability at the /goform/setsambacfg interface of Tenda AC15 US_AC15V1.0BR_V15.03.05.20_multi_TDE01.bin device web, which can also cooperate with CVE-2021-44971 to cause unconditional arbitrary command execution
GHSA
GHSA-cvxm-mgpf-m49w: Multiple Tenda devices are affected by authentication bypass, such as AC15V1
ghsa_unreviewed·2022-01-29
CVE-2021-44971 [CRITICAL] CWE-287 GHSA-cvxm-mgpf-m49w: Multiple Tenda devices are affected by authentication bypass, such as AC15V1
Multiple Tenda devices are affected by authentication bypass, such as AC15V1.0 Firmware V15.03.05.20_multi?AC5V1.0 Firmware V15.03.06.48_multi and so on. an attacker can obtain sensitive information, and even combine it with authenticated command injection to implement RCE.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2022-01-28
Published