cve,link,title,description,vendor,products,score,severity,epss,cisa,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2023-38935,https://securityvulnerability.io/vulnerability/CVE-2023-38935,Buffer Overflow Vulnerability in Tenda AC Series Routers,"A buffer overflow vulnerability exists in the Tenda AC series routers through the list parameter in the formSetQosBand function. Exploiting this weakness could potentially allow an attacker to gain unauthorized access and control over the affected devices. This impacts Tenda router models AC1206, AC8, AC5, AC10, and AC9, highlighting the importance of securing network devices against such vulnerabilities.",Tenda,Ac1206 Firmware,9.8,CRITICAL,0.0030400000978261232,false,false,false,false,,false,false,2023-08-07T00:00:00.000Z,0 CVE-2022-42081,https://securityvulnerability.io/vulnerability/CVE-2022-42081,,Tenda AC1206 US_AC1206V1.0RTL_V15.03.06.23_multi_TD01 was discovered to contain a stack overflow via sched_end_time parameter.,Tenda,Ac1206 Firmware,7.5,HIGH,0.0008900000248104334,false,false,false,false,,false,false,2022-10-12T00:00:00.000Z,0 CVE-2022-42080,https://securityvulnerability.io/vulnerability/CVE-2022-42080,,Tenda AC1206 US_AC1206V1.0RTL_V15.03.06.23_multi_TD01 was discovered to contain a heap overflow via sched_start_time parameter.,Tenda,Ac1206 Firmware,7.5,HIGH,0.0008900000248104334,false,false,false,false,,false,false,2022-10-12T00:00:00.000Z,0 CVE-2022-42077,https://securityvulnerability.io/vulnerability/CVE-2022-42077,,Tenda AC1206 US_AC1206V1.0RTL_V15.03.06.23_multi_TD01 is vulnerable to Cross Site Request Forgery (CSRF) via function fromSysToolReboot.,Tenda,Ac1206 Firmware,6.5,MEDIUM,0.0006799999973736703,false,false,false,false,,false,false,2022-10-12T00:00:00.000Z,0 CVE-2022-42079,https://securityvulnerability.io/vulnerability/CVE-2022-42079,,Tenda AC1206 US_AC1206V1.0RTL_V15.03.06.23_multi_TD01 was discovered to contain a stack overflow via the function formWifiBasicSet.,Tenda,Ac1206 Firmware,7.5,HIGH,0.0008900000248104334,false,false,false,false,,false,false,2022-10-12T00:00:00.000Z,0 CVE-2022-42078,https://securityvulnerability.io/vulnerability/CVE-2022-42078,,Tenda AC1206 US_AC1206V1.0RTL_V15.03.06.23_multi_TD01 is vulnerable to Cross Site Request Forgery (CSRF) via function fromSysToolRestoreSet.,Tenda,Ac1206 Firmware,6.5,MEDIUM,0.0006799999973736703,false,false,false,false,,false,false,2022-10-12T00:00:00.000Z,0 CVE-2022-37816,https://securityvulnerability.io/vulnerability/CVE-2022-37816,,Tenda AC1206 V15.03.06.23 was discovered to contain a stack overflow via the function fromSetIpMacBind.,Tenda,Ac1206 Firmware,9.8,CRITICAL,0.002219999907538295,false,false,false,false,,false,false,2022-08-25T14:07:19.000Z,0 CVE-2022-37814,https://securityvulnerability.io/vulnerability/CVE-2022-37814,,Tenda AC1206 V15.03.06.23 was discovered to contain multiple stack overflows via the deviceMac and the device_id parameters in the function addWifiMacFilter.,Tenda,Ac1206 Firmware,9.8,CRITICAL,0.002219999907538295,false,false,false,false,,false,false,2022-08-25T14:07:12.000Z,0 CVE-2022-37815,https://securityvulnerability.io/vulnerability/CVE-2022-37815,,Tenda AC1206 V15.03.06.23 was discovered to contain a stack overflow via the PPPOEPassword parameter in the function formQuickIndex.,Tenda,Ac1206 Firmware,9.8,CRITICAL,0.002219999907538295,false,false,false,false,,false,false,2022-08-25T14:06:55.000Z,0 CVE-2022-37813,https://securityvulnerability.io/vulnerability/CVE-2022-37813,,Tenda AC1206 V15.03.06.23 was discovered to contain a stack overflow via the function fromSetSysTime.,Tenda,Ac1206 Firmware,9.8,CRITICAL,0.002219999907538295,false,false,false,false,,false,false,2022-08-25T14:06:50.000Z,0 CVE-2022-37809,https://securityvulnerability.io/vulnerability/CVE-2022-37809,,Tenda AC1206 V15.03.06.23 was discovered to contain a stack overflow via the speed_dir parameter in the function formSetSpeedWan.,Tenda,Ac1206 Firmware,9.8,CRITICAL,0.002219999907538295,false,false,false,false,,false,false,2022-08-25T14:06:48.000Z,0 CVE-2022-37810,https://securityvulnerability.io/vulnerability/CVE-2022-37810,,Tenda AC1206 V15.03.06.23 was discovered to contain a command injection vulnerability via the mac parameter in the function formWriteFacMac.,Tenda,Ac1206 Firmware,9.8,CRITICAL,0.00901000015437603,false,false,false,false,,false,false,2022-08-25T14:06:35.000Z,0 CVE-2022-37808,https://securityvulnerability.io/vulnerability/CVE-2022-37808,,Tenda AC1206 V15.03.06.23 was discovered to contain a stack overflow via the index parameter in the function formWifiWpsOOB.,Tenda,Ac1206 Firmware,9.8,CRITICAL,0.002219999907538295,false,false,false,false,,false,false,2022-08-25T14:06:15.000Z,0 CVE-2022-37807,https://securityvulnerability.io/vulnerability/CVE-2022-37807,,Tenda AC1206 V15.03.06.23 was discovered to contain a stack overflow via the function formSetClientState.,Tenda,Ac1206 Firmware,9.8,CRITICAL,0.002219999907538295,false,false,false,false,,false,false,2022-08-25T14:06:06.000Z,0 CVE-2022-37806,https://securityvulnerability.io/vulnerability/CVE-2022-37806,,Tenda AC1206 V15.03.06.23 was discovered to contain a stack overflow via the page parameter in the function fromDhcpListClient.,Tenda,Ac1206 Firmware,9.8,CRITICAL,0.002219999907538295,false,false,false,false,,false,false,2022-08-25T14:05:58.000Z,0 CVE-2022-37805,https://securityvulnerability.io/vulnerability/CVE-2022-37805,,Tenda AC1206 V15.03.06.23 was discovered to contain a stack overflow via the function fromWizardHandle.,Tenda,Ac1206 Firmware,9.8,CRITICAL,0.002219999907538295,false,false,false,false,,false,false,2022-08-25T14:05:57.000Z,0 CVE-2022-37811,https://securityvulnerability.io/vulnerability/CVE-2022-37811,,Tenda AC1206 V15.03.06.23 was discovered to contain a stack overflow via the startIp parameter in the function formSetPPTPServer.,Tenda,Ac1206 Firmware,9.8,CRITICAL,0.002219999907538295,false,false,false,false,,false,false,2022-08-25T14:05:43.000Z,0 CVE-2022-37812,https://securityvulnerability.io/vulnerability/CVE-2022-37812,,Tenda AC1206 V15.03.06.23 was discovered to contain a stack overflow via the firewallEn parameter in the function formSetFirewallCfg.,Tenda,Ac1206 Firmware,9.8,CRITICAL,0.002219999907538295,false,false,false,false,,false,false,2022-08-25T14:05:43.000Z,0 CVE-2022-37803,https://securityvulnerability.io/vulnerability/CVE-2022-37803,,Tenda AC1206 V15.03.06.23 was discovered to contain a stack overflow via the page parameter in the function fromAddressNat.,Tenda,Ac1206 Firmware,9.8,CRITICAL,0.002219999907538295,false,false,false,false,,false,false,2022-08-25T14:04:37.000Z,0 CVE-2022-37804,https://securityvulnerability.io/vulnerability/CVE-2022-37804,,Tenda AC1206 V15.03.06.23 was discovered to contain a stack overflow via the time parameter in the function saveParentControlInfo.,Tenda,Ac1206 Firmware,9.8,CRITICAL,0.002219999907538295,false,false,false,false,,false,false,2022-08-25T14:04:34.000Z,0 CVE-2022-37802,https://securityvulnerability.io/vulnerability/CVE-2022-37802,,Tenda AC1206 V15.03.06.23 was discovered to contain a stack overflow via the page parameter in the function fromNatStaticSetting.,Tenda,Ac1206 Firmware,9.8,CRITICAL,0.002219999907538295,false,false,false,false,,false,false,2022-08-25T14:04:34.000Z,0 CVE-2022-37801,https://securityvulnerability.io/vulnerability/CVE-2022-37801,,Tenda AC1206 V15.03.06.23 was discovered to contain a stack overflow via the list parameter at the function formSetQosBand.,Tenda,Ac1206 Firmware,9.8,CRITICAL,0.002219999907538295,false,false,false,false,,false,false,2022-08-25T14:04:34.000Z,0 CVE-2022-37800,https://securityvulnerability.io/vulnerability/CVE-2022-37800,,Tenda AC1206 V15.03.06.23 was discovered to contain a stack overflow via the list parameter at the function fromSetRouteStatic.,Tenda,Ac1206 Firmware,9.8,CRITICAL,0.002219999907538295,false,false,false,false,,false,false,2022-08-25T14:04:34.000Z,0 CVE-2022-37799,https://securityvulnerability.io/vulnerability/CVE-2022-37799,,Tenda AC1206 V15.03.06.23 was discovered to contain a stack overflow via the time parameter at the function setSmartPowerManagement.,Tenda,Ac1206 Firmware,9.8,CRITICAL,0.002219999907538295,false,false,false,false,,false,false,2022-08-25T14:04:30.000Z,0 CVE-2022-37798,https://securityvulnerability.io/vulnerability/CVE-2022-37798,,Tenda AC1206 V15.03.06.23 was discovered to contain a stack overflow via the list parameter at the function formSetVirtualSer.,Tenda,Ac1206 Firmware,9.8,CRITICAL,0.002219999907538295,false,false,false,false,,false,false,2022-08-25T14:04:30.000Z,0