CVE-2023-23080
published 2023-02-27CVE-2023-23080: Certain Tenda products are vulnerable to command injection. This affects Tenda CP7 Tenda CP7<=V11.10.00.2211041403 and Tenda CP3 v.10 Tenda CP3…
PriorityP357critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
2.46%
82.5th percentile
Certain Tenda products are vulnerable to command injection. This affects Tenda CP7 Tenda CP7<=V11.10.00.2211041403 and Tenda CP3 v.10 Tenda CP3 v.10<=V20220906024_2025 and Tenda IT7-PCS Tenda IT7-PCS<=V2209020914 and Tenda IT7-LCS Tenda IT7-LCS<=V2209020914 and Tenda IT7-PRS Tenda IT7-PRS<=V2209020908.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| tenda | cp3_firmware | <= 20220906024_2025 | — |
| tenda | cp7_firmware | <= 1.10.00.2211041403 | — |
| tenda | it7-lcs_firmware | <= 2209020914 | — |
| tenda | it7-pcs_firmware | <= 2209020914 | — |
| tenda | it7-prs_firmware | <= 2209020908 | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
2023-02-27
Published