cve,link,title,description,vendor,products,score,severity,epss,cisa,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2024-11650,https://securityvulnerability.io/vulnerability/CVE-2024-11650,Null Pointer Dereference Vulnerability in Tenda i9 Router,"CVE-2024-11650 highlights a critical vulnerability in the Tenda i9 router, specifically within the websReadEvent function, which is located in the /goform/GetIPTV file. This flaw leads to a null pointer dereference, allowing remote attackers to exploit the system without needing physical access. The vulnerability has been publicly disclosed, increasing the urgency for users to patch their devices. All users of Tenda i9 version 1.0.0.8(3828) should be alert to this vulnerability and ensure their devices are updated to safeguard against potential exploits.",Tenda,I9,,,0.00044999999227002263,false,false,false,true,true,false,false,2024-11-25T02:00:15.883Z,0 CVE-2024-0996,https://securityvulnerability.io/vulnerability/CVE-2024-0996,Tenda i9 httpd setcfm formSetCfm stack-based overflow,"A significant vulnerability has been identified in Tenda's Tenda i9 model version 1.0.0.9(4122), specifically within the formSetCfm function located in the /goform/setcfm file of the httpd component. This vulnerability arises from a stack-based buffer overflow triggered by manipulation of the argument funcpara1. The flaw allows for remote exploitation, posing a serious risk to users. Despite prior disclosure of this vulnerability to the vendor, there has been no response, emphasizing the urgent need for awareness and mitigation strategies among affected users.",Tenda,i9,9.8,CRITICAL,0.002360000042244792,false,false,false,true,true,false,false,2024-01-29T02:31:04.436Z,0 CVE-2022-40107,https://securityvulnerability.io/vulnerability/CVE-2022-40107,,Tenda i9 v1.0.0.8(3828) was discovered to contain a buffer overflow via the formexeCommand function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted string.,Tenda,I9 Firmware,7.5,HIGH,0.0008900000248104334,false,false,false,false,,false,false,2022-09-23T18:54:33.000Z,0 CVE-2022-40106,https://securityvulnerability.io/vulnerability/CVE-2022-40106,,Tenda i9 v1.0.0.8(3828) was discovered to contain a buffer overflow via the set_local_time function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted string.,Tenda,I9 Firmware,7.5,HIGH,0.0008900000248104334,false,false,false,false,,false,false,2022-09-23T18:54:33.000Z,0 CVE-2022-40105,https://securityvulnerability.io/vulnerability/CVE-2022-40105,,Tenda i9 v1.0.0.8(3828) was discovered to contain a buffer overflow via the formWifiMacFilterGet function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted string.,Tenda,I9 Firmware,7.5,HIGH,0.0008900000248104334,false,false,false,false,,false,false,2022-09-23T18:54:32.000Z,0 CVE-2022-40104,https://securityvulnerability.io/vulnerability/CVE-2022-40104,,Tenda i9 v1.0.0.8(3828) was discovered to contain a buffer overflow via the formwrlSSIDget function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted string.,Tenda,I9 Firmware,7.5,HIGH,0.0008900000248104334,false,false,false,false,,false,false,2022-09-23T18:54:31.000Z,0 CVE-2022-40103,https://securityvulnerability.io/vulnerability/CVE-2022-40103,,Tenda i9 v1.0.0.8(3828) was discovered to contain a buffer overflow via the formSetAutoPing function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted string.,Tenda,I9 Firmware,5.5,MEDIUM,0.0005000000237487257,false,false,false,false,,false,false,2022-09-23T18:54:30.000Z,0 CVE-2022-40102,https://securityvulnerability.io/vulnerability/CVE-2022-40102,,Tenda i9 v1.0.0.8(3828) was discovered to contain a buffer overflow via the formwrlSSIDset function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted string.,Tenda,I9 Firmware,7.5,HIGH,0.0008900000248104334,false,false,false,false,,false,false,2022-09-23T18:54:30.000Z,0 CVE-2022-40101,https://securityvulnerability.io/vulnerability/CVE-2022-40101,,Tenda i9 v1.0.0.8(3828) was discovered to contain a buffer overflow via the formWifiMacFilterSet function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted string.,Tenda,I9 Firmware,7.5,HIGH,0.0008900000248104334,false,false,false,false,,false,false,2022-09-23T18:54:29.000Z,0 CVE-2022-40100,https://securityvulnerability.io/vulnerability/CVE-2022-40100,,Tenda i9 v1.0.0.8(3828) was discovered to contain a command injection vulnerability via the FormexeCommand function.,Tenda,I9 Firmware,9.8,CRITICAL,0.001550000044517219,false,false,false,false,,false,false,2022-09-23T18:54:28.000Z,0