Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Amalll

#17558of 53,630
15.3Total CVSS
Vulnerabilities · 2
Medium
1
Critical
1
PT-2022-23269
5.5
2022-08-19
Tenda · Tenda Ac9 · CVE-2022-36233
**Name of the Vulnerable Software and Affected Versions** Tenda AC9 version 15.03.2.13 **Description** The issue is related to a Buffer Overflow via httpd, specifically in the form fast setting wifi set function. This affects the httpd service. **Recommendations** For Tenda AC9 version 15.03.2.13, consider disabling the httpd service or restricting access to the form fast setting wifi set function until a patch is available. Avoid using the `form fast setting wifi set` function in the affected httpd endpoint until the issue is resolved.
PT-2022-23855
9.8
2022-08-19
Tenda · Tenda Ac15 · CVE-2022-37175
**Name of the Vulnerable Software and Affected Versions** Tenda ac15 firmware version V15.03.05.18 **Description** The issue is related to a stack buffer overflow in the httpd server of the Tenda ac15 firmware. This overflow occurs in the `/goform/formWifiBasicSet` API endpoint. **Recommendations** For Tenda ac15 firmware version V15.03.05.18, as a temporary workaround, consider restricting access to the `/goform/formWifiBasicSet` API endpoint until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.