← Back

Ax12 Firmware

ax12_firmware

Vendor: Tenda • 31 CVEs

CVEs (31)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Tenda
1Ax12 Firmware
Nov 21, 2024
May 4, 2022
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Tenda AX12 v22.03.01.21_CN was discovered to contain a stack overflow via the list parameter at /goform/SetNetControlList.
1Tenda
1Ax12 Firmware
Nov 21, 2024
May 3, 2022
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
There is a stack overflow vulnerability in the /goform/setMacFilterCfg function in the httpd service of Tenda ax12 22.03.01.21_cn router. An attacker can obtain a stable shell through a carefully constructed payload
1Tenda
1Ax12 Firmware
Nov 21, 2024
Apr 25, 2022
N/A· v4
6.5 MEDIUM· v3
7.1 HIGH· v2
Tenda AX12 V22.03.01.21_CN was discovered to contain a Cross-Site Request Forgery (CSRF) via the function sub_422168 at /goform/WifiExtraSet.
1Tenda
1Ax12 Firmware
Nov 21, 2024
Apr 25, 2022
N/A· v4
6.5 MEDIUM· v3
7.1 HIGH· v2
Tenda AX12 V22.03.01.21_CN was discovered to contain a Cross-Site Request Forgery (CSRF) via the function sub_42E328 at /goform/SysToolReboot.
1Tenda
1Ax12 Firmware
Nov 21, 2024
Mar 10, 2022
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
Tenda AX12 v22.03.01.21 was discovered to contain a stack overflow in the function sub_42DE00. This vulnerability allows attackers to cause a Denial of Service (DoS) via the list parameter.
1Tenda
1Ax12 Firmware
Nov 21, 2024
Mar 10, 2022
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
Tenda AX12 v22.03.01.21 was discovered to contain a stack overflow in the function sub_4327CC. This vulnerability allows attackers to cause a Denial of Service (DoS) via the list parameter.
1Tenda
1Ax12 Firmware
Nov 21, 2024
Mar 10, 2022
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
Tenda AX12 v22.03.01.21 was discovered to contain a stack overflow in the function sub_42E328. This vulnerability allows attackers to cause a Denial of Service (DoS) via the list parameter.
1Tenda
1Ax12 Firmware
Nov 21, 2024
Mar 10, 2022
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
Tenda AX12 v22.03.01.21 was discovered to contain a stack buffer overflow in the function sub_422CE4. This vulnerability allows attackers to cause a Denial of Service (DoS) via the strcpy parameter.
1Tenda
1Ax12 Firmware
Nov 21, 2024
Feb 16, 2022
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
A Buffer Overflow vulnerability exists in Tenda Router AX12 V22.03.01.21_CN in the sub_422CE4 function in the goform/setIPv6Status binary file /usr/sbin/httpd via the conType parameter, which causes a Denial of Service.
1Tenda
1Ax12 Firmware
Nov 21, 2024
Feb 14, 2022
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
A Buffer Overflow vulnerability exists in Tenda Router AX12 V22.03.01.21_CN in the sub_422CE4 function in page /goform/setIPv6Status via the prefixDelegate parameter, which causes a Denial of Service.
1Tenda
2Ax12 Firmware
Ax3 Firmware
Nov 21, 2024
Feb 4, 2022
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
Tenda AX3 v16.03.12.10_CN and AX12 22.03.01.2_CN was discovered to contain a stack overflow in the function form_fast_setting_wifi_set. This vulnerability allows attackers to cause a Denial of Service (DoS) via the timeZ...Show more
Tenda AX3 v16.03.12.10_CN and AX12 22.03.01.2_CN was discovered to contain a stack overflow in the function form_fast_setting_wifi_set. This vulnerability allows attackers to cause a Denial of Service (DoS) via the timeZone parameter.Show less