Vulnerabilidades em Tenda

807 resultados
Análise Vexday

O portfólio de vulnerabilidades da Tenda acumula 757 CVEs catalogadas, volume expressivo que, aliado às 116 entradas surgidas nos últimos 90 dias, indica ritmo elevado de descobertas recentes e superfície de ataque em expansão. Embora nenhuma vulnerabilidade conste no catálogo KEV da CISA — taxa abaixo da média geral do catálogo —, a existência de 130 CVEs com prova de conceito pública representa risco operacional concreto, pois reduz significativamente a barreira para exploração oportunista. O tipo de falha mais frequente é CWE-121 (stack-based buffer overflow), classe que historicamente viabiliza execução remota de código em dispositivos de rede embarcados. A CVE mais perigosa em destaque atualmente é CVE-2024-10697, com score EPSS de 0,2551, indicando probabilidade não trivial de exploração e merecedora de atenção prioritária em planos de remediação.

CVE-2025-14665CRITICALTenda WH450 HTTP Request DhcpListClient stack-based overflowEPSS 1.0%CVE-2025-15006CRITICALTenda WH450 HTTP Request CheckTools stack-based overflowEPSS 1.0%CVE-2025-12265HIGHTenda CH22 VirtualSer fromVirtualSer buffer overflowEPSS 1.0%CVE-2025-5795HIGHTenda AC5 AdvSetLanip fromadvsetlanip buffer overflowEPSS 1.0%CVE-2025-5794HIGHTenda AC5 setPptpUserList formSetPPTPUserList buffer overflowEPSS 1.0%CVE-2025-5608HIGHTenda AC18 SetSysAutoRebbotCfg formsetreboottimer buffer overflowEPSS 1.0%CVE-2025-5849HIGHTenda AC15 HTTP POST Request SetRemoteWebCfg formSetSafeWanWebMan stack-based overflowEPSS 1.0%CVE-2025-5851HIGHTenda AC15 HTTP POST Request AdvSetLanip fromadvsetlanip buffer overflowEPSS 1.0%CVE-2025-6111HIGHTenda FH1205 VirtualSer fromVirtualSer stack-based overflowEPSS 1.0%CVE-2025-5609HIGHTenda AC18 AdvSetLanip fromadvsetlanip buffer overflowEPSS 1.0%CVE-2025-5847HIGHTenda AC9 HTTP POST Request SetRemoteWebCfg formSetSafeWanWebMan stack-based overflowEPSS 1.0%CVE-2025-5854HIGHTenda AC6 AdvSetLanip fromadvsetlanip buffer overflowEPSS 1.0%CVE-2025-5848HIGHTenda AC15 HTTP POST Request setPptpUserList formSetPPTPUserList buffer overflowEPSS 1.0%CVE-2025-5607HIGHTenda AC18 setPptpUserList formSetPPTPUserList buffer overflowEPSS 1.0%CVE-2025-11550HIGHTenda W12 HTTP Request modules wifiScheduledSet null pointer dereferenceEPSS 1.0%CVE-2023-2923MEDIUMTenda AC6 fromDhcpListClient stack-based overflowEPSS 1.0%CVE-2025-12225HIGHTenda AC6 HTTP Request WifiGuestSet stack-based overflowEPSS 0.9%CVE-2025-12209HIGHTenda O3 setDhcpConfig GetValue stack-based overflowEPSS 0.9%CVE-2026-4565HIGHTenda AC21 SetNetControlList formSetQosBand buffer overflowEPSS 0.9%CVE-2026-3274HIGHTenda F453 httpd L7Prot frmL7ProtForm buffer overflowEPSS 0.9%