Tenda O6 Firmware vulnerabilities

4 known vulnerabilities affecting tenda/o6_firmware.

Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH3

Vulnerabilities

Page 1 of 1
CVE-2024-46049CRITICALCVSS 9.8v1.0.0.7\(2054\)2024-09-13
CVE-2024-46049 [CRITICAL] CWE-787 CVE-2024-46049: Tenda O6 V3.0 firmware V1.0.0.7(2054) contains a stack overflow vulnerability in the formexeCommand Tenda O6 V3.0 firmware V1.0.0.7(2054) contains a stack overflow vulnerability in the formexeCommand function.
nvd
CVE-2024-8229HIGHCVSS 8.7v1.0.0.7\(2054\)2024-08-28
CVE-2024-8229 [HIGH] CWE-121 CVE-2024-8229: A vulnerability was found in Tenda O6 1.0.0.7(2054). It has been declared as critical. This vulnerab A vulnerability was found in Tenda O6 1.0.0.7(2054). It has been declared as critical. This vulnerability affects the function frommacFilterModify of the file /goform/operateMacFilter. The manipulation of the argument mac leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be u
nvd
CVE-2024-8230HIGHCVSS 8.7v1.0.0.7\(2054\)2024-08-28
CVE-2024-8230 [HIGH] CWE-121 CVE-2024-8230: A vulnerability was found in Tenda O6 1.0.0.7(2054). It has been rated as critical. This issue affec A vulnerability was found in Tenda O6 1.0.0.7(2054). It has been rated as critical. This issue affects the function fromSafeSetMacFilter of the file /goform/setMacFilterList. The manipulation of the argument remark/type/time leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may b
nvd
CVE-2024-8231HIGHCVSS 8.7v1.0.0.7\(2054\)2024-08-28
CVE-2024-8231 [HIGH] CWE-121 CVE-2024-8231: A vulnerability classified as critical has been found in Tenda O6 1.0.0.7(2054). Affected is the fun A vulnerability classified as critical has been found in Tenda O6 1.0.0.7(2054). Affected is the function fromVirtualSet of the file /goform/setPortForward. The manipulation of the argument ip/localPort/publicPort/app leads to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may
nvd