Tenda W20E是中国Tenda公司的一款企业级无线路由器。 Tenda W20E 15.11.0.6(1068_1546_841)_CN_TDC版本存在缓冲区错误漏洞,该漏洞源于QoS Edit组件lstAdd函数对/goform/editQos文件中参数qosListConnecttedNum的操作,可能导致栈缓冲区溢出,攻击者可能远程利用该漏洞。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2026-19788 | 8.8 HIGH | Tenda AC1206 httpd web management interface SetOnlineDevName set_device_name stack-based o |
| CVE-2026-19789 | 8.8 HIGH | Tenda AC1206 httpd web management interface WifiGuestSet set_wl_guest_iplist stack-based o |
| CVE-2026-19790 | 8.8 HIGH | Tenda G0 httpd Web Management module formSetPortMirror stack-based overflow |
| CVE-2026-19791 | 8.8 HIGH | Tenda G0 httpd web management interface module addStaticRoute stack-based overflow |
| CVE-2026-19792 | 8.8 HIGH | Tenda G0 httpd web management interface module setPortMapping buffer overflow |
| CVE-2026-19821 | 8.8 HIGH | Tenda AC12 httpd web management interface SetSysAutoRebbotCfg formSetRebootTimer buffer ov |
| CVE-2026-19823 | 8.8 HIGH | Tenda W20E QoS Rule Deletion delQos formQOSRuleDel stack-based overflow |
| CVE-2026-19824 | 8.8 HIGH | Tenda W20E addIpMacBind ipMacBindListStore stack-based overflow |
No comments yet