Tenda AX1803是中国腾达(Tenda)公司的一款双频千兆WIFI6路由器。 Tenda AX1803 1.0.0.1版本存在安全漏洞,该漏洞源于对参数 serverName/ddnsUser/ddnsPwd/ddnsDomain 的错误操作会导致基于堆栈的缓冲区溢出。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2024-4244 | 8.8 HIGH | Tenda W9 DhcpSetSer fromDhcpSetSer stack-based overflow |
| CVE-2024-4243 | 8.8 HIGH | Tenda W9 wifiSSIDset formwrlSSIDset stack-based overflow |
| CVE-2024-4242 | 8.8 HIGH | Tenda W9 wifiSSIDget formwrlSSIDget stack-based overflow |
| CVE-2024-4241 | 8.8 HIGH | Tenda W9 formQosManageDouble_auto stack-based overflow |
| CVE-2024-4240 | 8.8 HIGH | Tenda W9 formQosManageDouble_user stack-based overflow |
| CVE-2024-4239 | 8.8 HIGH | Tenda AX1806 SetRebootTimer formSetRebootTimer stack-based overflow |
| CVE-2024-4238 | 8.8 HIGH | Tenda AX1806 SetOnlineDevName formSetDeviceName stack-based overflow |
| CVE-2024-4237 | 8.8 HIGH | Tenda AX1806 execCommand R7WebsSecurityHandler stack-based overflow |
No comments yet