Tenda Ac6 Firmware vulnerabilities

105 known vulnerabilities affecting tenda/ac6_firmware.

Total CVEs
105
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL47HIGH46MEDIUM12

Vulnerabilities

Page 6 of 6
CVE-2022-25448CRITICALCVSS 9.8v15.03.05.092022-03-18
CVE-2022-25448 [CRITICAL] CWE-787 CVE-2022-25448: Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the day parameter in the Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the day parameter in the openSchedWifi function.
nvd
CVE-2022-25449CRITICALCVSS 9.8v15.03.05.092022-03-18
CVE-2022-25449 [CRITICAL] CWE-787 CVE-2022-25449: Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the deviceId parameter i Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the deviceId parameter in the saveParentControlInfo function.
nvd
CVE-2022-25455CRITICALCVSS 9.8v15.03.05.092022-03-18
CVE-2022-25455 [CRITICAL] CWE-787 CVE-2022-25455: Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the list parameter in th Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the list parameter in the SetIpMacBind function.
nvd
CVE-2022-25460CRITICALCVSS 9.8v15.03.05.092022-03-18
CVE-2022-25460 [CRITICAL] CWE-787 CVE-2022-25460: Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the endip parameter in t Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the endip parameter in the SetPptpServerCfg function.
nvd
CVE-2020-28095HIGHCVSS 7.5v15.03.06.512020-12-30
CVE-2020-28095 [HIGH] CWE-835 CVE-2020-28095: On Tenda AC1200 (Model AC6) 15.03.06.51_multi devices, a large HTTP POST request sent to the change On Tenda AC1200 (Model AC6) 15.03.06.51_multi devices, a large HTTP POST request sent to the change password API will trigger the router to crash and enter an infinite boot loop.
nvd