Show filters
145 Total Results
Displaying 141-145 of 145
Sort by:
Attacker Value
Unknown

CVE-2018-5770

Disclosure Date: March 20, 2018 (last updated November 26, 2024)
An issue was discovered on Tenda AC15 devices. A remote, unauthenticated attacker can make a request to /goform/telnet, creating a telnetd service on the device. This service is password protected; however, several default accounts exist on the device that are root accounts, which can be used to log in.
0
Attacker Value
Unknown

CVE-2018-7561

Disclosure Date: March 01, 2018 (last updated November 26, 2024)
Stack-based Buffer Overflow in httpd on Tenda AC9 devices V15.03.05.14_EN allows remote attackers to cause a denial of service or possibly have unspecified other impact.
0
Attacker Value
Unknown

CVE-2018-5767

Disclosure Date: February 15, 2018 (last updated November 26, 2024)
An issue was discovered on Tenda AC15 V15.03.1.16_multi devices. A remote, unauthenticated attacker can gain remote code execution on the device with a crafted password parameter for the COOKIE header.
0
Attacker Value
Unknown

CVE-2017-9138

Disclosure Date: May 21, 2017 (last updated November 26, 2024)
There is a debug-interface vulnerability on some Tenda routers (FH1202/F1202/F1200: versions before 1.2.0.20). After connecting locally to a router in a wired or wireless manner, one can bypass intended access restrictions by sending shell commands directly and reading their results, or by entering shell commands that change this router's username and password.
0
Attacker Value
Unknown

CVE-2017-9139

Disclosure Date: May 21, 2017 (last updated November 26, 2024)
There is a stack-based buffer overflow on some Tenda routers (FH1202/F1202/F1200: versions before 1.2.0.20). Crafted POST requests to an unspecified URL result in DoS, interrupting the HTTP service (used to login to the web UI of a router) for 1 to 2 seconds.
0