Tenda Cx12L vulnerabilities
8 known vulnerabilities affecting tenda/cx12l.
Total CVEs
8
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH8
Vulnerabilities
Page 1 of 1
CVE-2026-11504P2HIGHCVSS 8.8v16.03.53.122026-06-08
CVE-2026-11504 [HIGH] CWE-119 CVE-2026-11504: A vulnerability was detected in Tenda CX12L 16.03.53.12. The impacted element is the function setSch
A vulnerability was detected in Tenda CX12L 16.03.53.12. The impacted element is the function setSchedWifi of the file /goform/openSchedWifi of the component Wi-Fi Schedule Configuration Endpoint. Performing a manipulation of the argument schedStartTime/schedEndTime results in stack-based buffer overflow. The attack may be initiated remotely. The expl
nvd
CVE-2026-11503P2HIGHCVSS 8.8v16.03.53.122026-06-08
CVE-2026-11503 [HIGH] CWE-119 CVE-2026-11503: A security vulnerability has been detected in Tenda CX12L 16.03.53.12. The affected element is the f
A security vulnerability has been detected in Tenda CX12L 16.03.53.12. The affected element is the function form_fast_setting_wifi_set of the file /goform/fast_setting_wifi_set of the component Wi-Fi Configuration Endpoint. Such manipulation of the argument ssid leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has
nvd
CVE-2026-5685P2HIGHCVSS 8.8v16.03.53.122026-04-06
CVE-2026-5685 [HIGH] CWE-119 CVE-2026-5685: A vulnerability was identified in Tenda CX12L 16.03.53.12. This affects the function fromAddressNat
A vulnerability was identified in Tenda CX12L 16.03.53.12. This affects the function fromAddressNat of the file /goform/addressNat. The manipulation of the argument page leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit is publicly available and might be used.
nvd
CVE-2026-5687P2HIGHCVSS 8.8v16.03.53.122026-04-06
CVE-2026-5687 [HIGH] CWE-119 CVE-2026-5687: A weakness has been identified in Tenda CX12L 16.03.53.12. This issue affects the function fromNatSt
A weakness has been identified in Tenda CX12L 16.03.53.12. This issue affects the function fromNatStaticSetting of the file /goform/NatStaticSetting. This manipulation of the argument page causes stack-based buffer overflow. The attack may be initiated remotely. The exploit has been made available to the public and could be used for attacks.
nvd
CVE-2026-8138P2HIGHCVSS 8.8v16.03.53.122026-05-08
CVE-2026-8138 [HIGH] CWE-119 CVE-2026-8138: A vulnerability was found in Tenda CX12L 16.03.53.12. This issue affects the function formSetPPTPSer
A vulnerability was found in Tenda CX12L 16.03.53.12. This issue affects the function formSetPPTPServer of the file /goform/SetPptpServerCfg”. The manipulation results in stack-based buffer overflow. The attack can be executed remotely. The exploit has been made public and could be used.
nvd
CVE-2026-5686P2HIGHCVSS 8.8v16.03.53.122026-04-06
CVE-2026-5686 [HIGH] CWE-119 CVE-2026-5686: A security flaw has been discovered in Tenda CX12L 16.03.53.12. This vulnerability affects the funct
A security flaw has been discovered in Tenda CX12L 16.03.53.12. This vulnerability affects the function fromRouteStatic of the file /goform/RouteStatic. The manipulation of the argument page results in stack-based buffer overflow. The attack can be launched remotely. The exploit has been released to the public and may be used for attacks.
nvd
CVE-2026-5683P3HIGHCVSS 8.0v16.03.53.122026-04-06
CVE-2026-5683 [HIGH] CWE-119 CVE-2026-5683: A vulnerability was found in Tenda CX12L 16.03.53.12. Affected by this vulnerability is the function
A vulnerability was found in Tenda CX12L 16.03.53.12. Affected by this vulnerability is the function fromP2pListFilter of the file /goform/P2pListFilter. Performing a manipulation of the argument page results in stack-based buffer overflow. The attack must originate from the local network. The exploit has been made public and could be used.
nvd
CVE-2026-5684P3HIGHCVSS 8.0v16.03.53.122026-04-06
CVE-2026-5684 [HIGH] CWE-119 CVE-2026-5684: A vulnerability was determined in Tenda CX12L 16.03.53.12. Affected by this issue is the function fr
A vulnerability was determined in Tenda CX12L 16.03.53.12. Affected by this issue is the function fromwebExcptypemanFilter of the file /goform/webExcptypemanFilter. Executing a manipulation of the argument page can lead to stack-based buffer overflow. The attack requires access to the local network. The exploit has been publicly disclosed and may be uti
nvd