Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Ax1803_firmware
(Tenda)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 51 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2022-08-25 | CVE-2022-37818 | Tenda AX1803 v1.0.0.1 was discovered to contain a stack overflow via the list parameter at the function formSetQosBand. | Ax1803_firmware | 7.8 | ||
2022-08-25 | CVE-2022-37819 | Tenda AX1803 v1.0.0.1 was discovered to contain a stack overflow via the timezone parameter in the function fromSetSysTime. | Ax1803_firmware | 7.8 | ||
2022-08-25 | CVE-2022-37820 | Tenda AX1803 v1.0.0.1 was discovered to contain a stack overflow via the ddnsEn parameter in the function formSetSysToolDDNS. | Ax1803_firmware | 7.8 | ||
2022-08-25 | CVE-2022-37821 | Tenda AX1803 v1.0.0.1 was discovered to contain a stack overflow via the ProvinceCode parameter in the function formSetProvince. | Ax1803_firmware | 7.8 | ||
2022-08-25 | CVE-2022-37822 | Tenda AX1803 v1.0.0.1 was discovered to contain a stack overflow via the function fromSetRouteStatic. | Ax1803_firmware | 7.8 | ||
2022-08-25 | CVE-2022-37823 | Tenda AX1803 v1.0.0.1 was discovered to contain a stack overflow via the list parameter in the function formSetVirtualSer. | Ax1803_firmware | 7.8 | ||
2022-08-25 | CVE-2022-37824 | Tenda AX1803 v1.0.0.1 was discovered to contain a stack overflow via the shareSpeed parameter in the function fromSetWifiGusetBasic. | Ax1803_firmware | 7.8 | ||
2022-10-12 | CVE-2022-42086 | Tenda AX1803 US_AX1803v2.0br_v1.0.0.1_2994_CN_ZGYD01_4 is vulnerable to Cross Site Request Forgery (CSRF) via function TendaAteMode. | Ax1803_firmware | 6.5 | ||
2022-10-12 | CVE-2022-42087 | Tenda AX1803 US_AX1803v2.0br_v1.0.0.1_2994_CN_ZGYD01_4 is vulnerable to Cross Site Request Forgery (CSRF) via function fromSysToolReboot. | Ax1803_firmware | 6.5 | ||
2023-11-14 | CVE-2022-45781 | Buffer Overflow vulnerability in Tenda AX1803 v1.0.0.1_2994 and earlier allows attackers to run arbitrary code via /goform/SetOnlineDevName. | Ax1803_firmware | 8.8 |