Vulnerabilidades en Tenda

807 resultados
Análisis Vexday

O portfólio de vulnerabilidades da Tenda acumula 757 CVEs catalogadas, volume expressivo que, aliado às 116 entradas surgidas nos últimos 90 dias, indica ritmo elevado de descobertas recentes e superfície de ataque em expansão. Embora nenhuma vulnerabilidade conste no catálogo KEV da CISA — taxa abaixo da média geral do catálogo —, a existência de 130 CVEs com prova de conceito pública representa risco operacional concreto, pois reduz significativamente a barreira para exploração oportunista. O tipo de falha mais frequente é CWE-121 (stack-based buffer overflow), classe que historicamente viabiliza execução remota de código em dispositivos de rede embarcados. A CVE mais perigosa em destaque atualmente é CVE-2024-10697, com score EPSS de 0,2551, indicando probabilidade não trivial de exploração e merecedora de atenção prioritária em planos de remediação.

CVE-2025-4368HIGHTenda AC8 MtuSetMacWan formGetRouterStatus buffer overflowEPSS 0.8%CVE-2025-4299HIGHTenda AC1206 openSchedWifi setSchedWifi buffer overflowEPSS 0.8%CVE-2026-2186HIGHTenda RX3 SetIpMacBind fromSetIpMacBind stack-based overflowEPSS 0.8%CVE-2026-2187HIGHTenda RX3 formSetQosBand set_qosMib_list stack-based overflowEPSS 0.8%CVE-2025-7853HIGHTenda FH451 SetIpBind fromSetIpBind stack-based overflowEPSS 0.8%CVE-2025-9748HIGHTenda CH22 httpd IPSECsave fromIpsecitem stack-based overflowEPSS 0.8%CVE-2026-86300MEDIUMTenda AC9 Web Management R7WebsSecurityHandler improper authenticationEPSS 0.8%CVE-2024-0927MEDIUMTenda AC10U fromAddressNat stack-based overflowEPSS 0.8%CVE-2026-5548HIGHTenda AC10 httpd fromSysToolChangePwd stack-based overflowEPSS 0.8%CVE-2025-4896HIGHTenda AC10 UserCongratulationsExec buffer overflowEPSS 0.8%CVE-2025-1896HIGHTenda TX3 SetStaticRouteCfg buffer overflowEPSS 0.8%CVE-2025-1898HIGHTenda TX3 openSchedWifi buffer overflowEPSS 0.8%CVE-2025-8178HIGHTenda AC10 RequestsProcessLaid heap-based overflowEPSS 0.8%CVE-2025-2995MEDIUMTenda FH1202 Web Management Interface SysToolChangePwd access controlEPSS 0.8%CVE-2025-7434HIGHTenda FH451 POST Request addressNat fromAddressNat stack-based overflowEPSS 0.8%CVE-2025-7796HIGHTenda FH451 PPTPDClient fromPptpUserAdd stack-based overflowEPSS 0.8%CVE-2025-10815HIGHTenda AC20 HTTP POST Request SetPptpServerCfg strcpy buffer overflowEPSS 0.8%CVE-2025-10120HIGHTenda AC20 GetParentControlInfo strcpy buffer overflowEPSS 0.8%CVE-2025-5629HIGHTenda AC10 HTTP SetPptpServerCfg formSetPPTPServer buffer overflowEPSS 0.8%CVE-2025-11324HIGHTenda AC18 setNotUpgrade stack-based overflowEPSS 0.8%