cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2024-0993,https://securityvulnerability.io/vulnerability/CVE-2024-0993,Tenda i6 httpd WifiMacFilterGet formWifiMacFilterGet stack-based overflow,"A vulnerability in Tenda i6's function formWifiMacFilterGet within the httpd component can lead to a stack-based buffer overflow. This issue arises from the manipulation of the argument index, which can be remotely exploited. Although the vendor was notified prior to the public disclosure, no response was received. The disclosed exploit poses significant risks to affected products, necessitating urgent attention and remediation to safeguard against potential attacks.",Tenda,i6,9.8,CRITICAL,0.009189999662339687,false,,false,false,true,2024-01-29T01:31:04.000Z,true,false,false,,2024-01-29T01:31:04.198Z,0 CVE-2024-0992,https://securityvulnerability.io/vulnerability/CVE-2024-0992,Tenda i6 httpd wifiSSIDset formwrlSSIDset stack-based overflow,"A security vulnerability has been identified in the Tenda i6 router, where the function formwrlSSIDset located in the /goform/wifiSSIDset path is susceptible to stack-based buffer overflow. This flaw allows for manipulation of the argument index, potentially enabling remote attackers to execute arbitrary code. The vulnerability has been publicly disclosed, and exploitation attempts may be ongoing. Despite early notifications to Tenda regarding this issue, the vendor has not provided a response, raising concerns about the urgency for users to secure their devices.",Tenda,i6,9.8,CRITICAL,0.009189999662339687,false,,false,false,true,2024-01-29T01:00:06.000Z,true,false,false,,2024-01-29T01:00:06.960Z,0 CVE-2024-0991,https://securityvulnerability.io/vulnerability/CVE-2024-0991,Tenda i6 httpd setcfm formSetCfm stack-based overflow,"A stack-based buffer overflow has been identified in the Tenda i6 router, specifically in the function formSetCfm within the httpd component. The vulnerability arises from improper handling of the argument funcpara1, which could be manipulated to facilitate an overflow. This flaw allows an attacker to execute arbitrary code remotely, potentially compromising the device's integrity and security. Efforts to contact the vendor regarding this issue have gone unanswered, raising concerns about timely remediation and support for users.",Tenda,i6,9.8,CRITICAL,0.009189999662339687,false,,false,false,true,2024-01-29T01:00:05.000Z,true,false,false,,2024-01-29T01:00:05.851Z,0 CVE-2024-0990,https://securityvulnerability.io/vulnerability/CVE-2024-0990,Tenda i6 httpd setAutoPing formSetAutoPing stack-based overflow,"A stack-based buffer overflow vulnerability exists in the Tenda i6 router, specifically affecting the formSetAutoPing function within the file /goform/setAutoPing. This vulnerability arises from improper handling of the argument 'ping1', allowing remote attackers to exploit the vulnerability to execute arbitrary code or compromise device integrity. The exploit has been publicly disclosed, increasing the risk of active attacks. The vendor has been unresponsive to initial communications regarding this critical issue, emphasizing the importance of immediate remediation steps by users.",Tenda,i6,9.8,CRITICAL,0.009189999662339687,false,,false,false,true,2024-01-29T00:31:04.000Z,true,false,false,,2024-01-29T00:31:04.988Z,0 CVE-2023-48963,https://securityvulnerability.io/vulnerability/CVE-2023-48963,Buffer Overflow Vulnerability in Tenda i6 Router,"The Tenda i6 router suffers from a buffer overflow vulnerability that occurs through the /goform/wifiSSIDget endpoint. This weakness could potentially be exploited by an attacker to execute arbitrary code, which poses a significant risk to users' network security. Users are advised to ensure their firmware is up to date and to implement security measures to mitigate this vulnerability.",Tenda,I6 Firmware,7.5,HIGH,0.0005699999746866524,false,,false,false,false,,,false,false,,2023-11-30T00:00:00.000Z,0 CVE-2023-48964,https://securityvulnerability.io/vulnerability/CVE-2023-48964,Buffer Overflow Vulnerability in Tenda i6 by Tenda,"The Tenda i6 router, specifically version V1.0.0.8(3856), is susceptible to a buffer overflow vulnerability through the /goform/WifiMacFilterSet endpoint. This weakness may allow attackers to execute arbitrary code or disrupt service, posing significant risks to users' network security. Ensuring the router firmware is up-to-date and implementing strict network access controls are crucial remediation steps.",Tenda,I6 Firmware,7.5,HIGH,0.0005699999746866524,false,,false,false,false,,,false,false,,2023-11-30T00:00:00.000Z,0