Vulnerabilities (CVE)

Filtered by vendor Tenda Subscribe
Filtered by product Ax12
Total 24 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-27375 1 Tenda 2 Ax12, Ax12 Firmware 2023-12-10 7.1 HIGH 6.5 MEDIUM
Tenda AX12 V22.03.01.21_CN was discovered to contain a Cross-Site Request Forgery (CSRF) via the function sub_422168 at /goform/WifiExtraSet.
CVE-2022-27374 1 Tenda 2 Ax12, Ax12 Firmware 2023-12-10 7.1 HIGH 6.5 MEDIUM
Tenda AX12 V22.03.01.21_CN was discovered to contain a Cross-Site Request Forgery (CSRF) via the function sub_42E328 at /goform/SysToolReboot.
CVE-2021-45391 1 Tenda 2 Ax12, Ax12 Firmware 2023-12-10 5.0 MEDIUM 7.5 HIGH
A Buffer Overflow vulnerability exists in Tenda Router AX12 V22.03.01.21_CN in the sub_422CE4 function in the goform/setIPv6Status binary file /usr/sbin/httpd via the conType parameter, which causes a Denial of Service.
CVE-2022-24143 1 Tenda 4 Ax12, Ax12 Firmware, Ax3 and 1 more 2023-12-10 7.8 HIGH 7.5 HIGH
Tenda AX3 v16.03.12.10_CN and AX12 22.03.01.2_CN was discovered to contain a stack overflow in the function form_fast_setting_wifi_set. This vulnerability allows attackers to cause a Denial of Service (DoS) via the timeZone parameter.