cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2021-3186,https://securityvulnerability.io/vulnerability/CVE-2021-3186,Stored Cross-Site Scripting in Tenda AC5 AC1200,"A Stored Cross-Site Scripting vulnerability exists in the Wifi Settings page of the Tenda AC5 AC1200 router. This flaw allows remote attackers to inject arbitrary web scripts or HTML code via the Wifi Name parameter, potentially compromising the integrity and security of user data. If successfully exploited, it could lead to unauthorized actions on the affected device, posing serious risks to users.",Tenda,Ac1200 Firmware,6.1,MEDIUM,0.0035000001080334187,false,,false,false,false,,,false,false,,2021-01-24T19:35:34.000Z,0 CVE-2020-28095,https://securityvulnerability.io/vulnerability/CVE-2020-28095,Remote Code Execution Vulnerability in Tenda AC1200 Router,"A significant vulnerability has been discovered in the Tenda AC1200 (Model AC6) router, specifically in version 15.03.06.51_multi. A malicious actor can exploit this vulnerability by sending a large HTTP POST request to the router's change password API. This action triggers the router to crash, resulting in an infinite boot loop. Users of affected devices should take immediate steps to mitigate this risk and consider applying any available firmware updates.",Tenda,Ac1200 Firmware,7.5,HIGH,0.001509999972768128,false,,false,false,false,,,false,false,,2020-12-30T20:53:45.000Z,0 CVE-2020-28094,https://securityvulnerability.io/vulnerability/CVE-2020-28094,Router Speed Test Malware Vulnerability in Tenda AC1200 Model AC6,"A critical security flaw has been identified in the Tenda AC1200 router (Model AC6) that affects specific firmware versions. In the default settings for the router's speed test functionality, there are embedded links that redirect users to download malicious software, namely elive or CNKI E-Learning. This flaw exposes users to significant risks as they may unknowingly execute harmful programs on their devices, compromising their systems and sensitive data.",Tenda,Ac1200 Firmware,7.5,HIGH,0.007840000092983246,false,,false,false,false,,,false,false,,2020-12-28T06:23:45.000Z,0 CVE-2020-28093,https://securityvulnerability.io/vulnerability/CVE-2020-28093,Default Password Vulnerability in Tenda AC1200 Routers,"The Tenda AC1200 Router (Model AC6) contains a significant security flaw due to default passwords that remain unchanged. Users of version 15.03.06.51_multi are particularly at risk, as essential accounts, including admin and user roles, are set to a default password of '1234'. This oversight can lead to unauthorized access, allowing potential attackers to gain control over the device and its settings, compromising the network's overall security.",Tenda,Ac1200 Firmware,7.2,HIGH,0.0016499999910593033,false,,false,false,false,,,false,false,,2020-12-28T06:21:34.000Z,0