
d1tto/IoT-vuln
CVE History
| CVE | Published | CVSS v3 | CVSS v2 |
|---|---|---|---|
| 7.5 HIGH | 5 MEDIUM | ||
TOTOLINK T6 V4.1.9cu.5179_B20201015 was discovered to contain a stack overflow via the desc parameter in the function FUN_00413be4. | |||
| 7.5 HIGH | 5 MEDIUM | ||
TOTOLINK T6 V4.1.9cu.5179_B20201015 was discovered to contain a stack overflow via the password parameter in the function FUN_00413f80. | |||
| 7.5 HIGH | 5 MEDIUM | ||
TOTOLINK T6 V4.1.9cu.5179_B20201015 was discovered to contain a stack overflow via the cloneMac parameter in the function FUN_0041621c. | |||
| 7.5 HIGH | 5 MEDIUM | ||
TOTOLINK T6 V4.1.9cu.5179_B20201015 was discovered to contain a stack overflow via the desc parameter in the function FUN_004137a4. | |||
| 7.5 HIGH | 5 MEDIUM | ||
TOTOLINK T6 V4.1.9cu.5179_B20201015 was discovered to contain a stack overflow via the desc, week, sTime, eTime parameters in the function FUN_004133c4. | |||
| 7.5 HIGH | 5 MEDIUM | ||
TOTOLINK T6 V4.1.9cu.5179_B20201015 was discovered to contain a stack overflow via the cloneMac parameter in the function FUN_0041af40. | |||
| 7.5 HIGH | 5 MEDIUM | ||
TOTOLINK T6 V4.1.9cu.5179_B20201015 was discovered to contain a stack overflow via the url parameter in the function FUN_00418540. | |||
| 7.5 HIGH | 5 MEDIUM | ||
TOTOLINK T6 V4.1.9cu.5179_B20201015 was discovered to contain a stack overflow via the command parameter in the function FUN_0041cc88. | |||
| 7.5 HIGH | 5 MEDIUM | ||
TOTOLINK T6 V4.1.9cu.5179_B20201015 was discovered to contain a stack overflow via the desc parameter in the function FUN_00412ef4. | |||
| 7.5 HIGH | 5 MEDIUM | ||
Tenda M3 V1.0.0.12 was discovered to contain a stack overflow via the function formSetAPCfg. | |||
| 7.5 HIGH | 7.8 HIGH | ||
Tenda M3 V1.0.0.12 was discovered to contain a stack overflow via the items parameter in the function formdelMasteraclist. | |||
| 7.5 HIGH | 5 MEDIUM | ||
Tenda M3 V1.0.0.12 was discovered to contain a stack overflow via the listN parameter in the function fromDhcpListClient. | |||
| 7.5 HIGH | 5 MEDIUM | ||
Tenda M3 V1.0.0.12 was discovered to contain a stack overflow via the function formSetAccessCodeInfo. | |||
| 7.5 HIGH | 5 MEDIUM | ||
Tenda M3 V1.0.0.12 was discovered to contain a stack overflow via the function formGetPassengerAnalyseData. | |||
| 7.5 HIGH | 7.8 HIGH | ||
Tenda M3 V1.0.0.12 was discovered to contain multiple stack overflow vulnerabilities via the ssidList, storeName, and trademark parameters in the function formSetStoreWeb. | |||
| 7.5 HIGH | 7.8 HIGH | ||
Tenda M3 V1.0.0.12 was discovered to contain a stack overflow via the function formMasterMng. | |||
| 7.5 HIGH | 7.8 HIGH | ||
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the function formSetVirtualSer. | |||
| 7.5 HIGH | 5 MEDIUM | ||
Tenda M3 V1.0.0.12 was discovered to contain a stack overflow via the function formSetCfm. | |||
| 7.5 HIGH | 5 MEDIUM | ||
TOTOLINK T6 V4.1.9cu.5179_B20201015 was discovered to contain a stack overflow via the desc parameter in the function FUN_0041880c. | |||
| 7.5 HIGH | 7.8 HIGH | ||
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the list parameter in the function fromSetRouteStatic. | |||
| 7.5 HIGH | 7.8 HIGH | ||
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the list parameter in the function formSetQosBand. | |||
| 9.8 CRITICAL | 10 HIGH | ||
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the deviceList parameter in the function formAddMacfilterRule. | |||
| 9.8 CRITICAL | 10 HIGH | ||
TOTOLINK N600R V4.3.0cu.7647_B20210106 was discovered to contain a stack overflow via the apcliKey parameter in the function FUN_0041bac4. | |||
| 9.8 CRITICAL | 10 HIGH | ||
TOTOLINK N600R V4.3.0cu.7647_B20210106 was discovered to contain a stack overflow via the macAddress parameter in the function FUN_0041b448. | |||
| 9.8 CRITICAL | 10 HIGH | ||
TOTOLINK N600R V4.3.0cu.7647_B20210106 was discovered to contain a stack overflow via the url parameter in the function FUN_00415bf0. | |||
| 9.8 CRITICAL | 10 HIGH | ||
TOTOLINK N600R V4.3.0cu.7647_B20210106 was discovered to contain a stack overflow via the File parameter in the function FUN_0041309c. | |||
| 9.8 CRITICAL | 10 HIGH | ||
TOTOLINK N600R V4.3.0cu.7647_B20210106 was discovered to contain a stack overflow via the comment parameter in the function FUN_004196c8. | |||
| 9.8 CRITICAL | 10 HIGH | ||
TOTOLINK N600R V4.3.0cu.7647_B20210106 was discovered to contain a stack overflow via the comment parameter in the function FUN_004200c8. | |||
| 9.8 CRITICAL | 10 HIGH | ||
TOTOLINK N600R V4.3.0cu.7647_B20210106 was discovered to contain a stack overflow via the comment parameter in the function FUN_00418f10. | |||
| 9.8 CRITICAL | 10 HIGH | ||
TOTOLINK N600R V4.3.0cu.7647_B20210106 was discovered to contain a stack overflow via the comment parameter in the function FUN_00418c24. | |||
| 9.8 CRITICAL | 10 HIGH | ||
TOTOLINK N600R V4.3.0cu.7647_B20210106 was discovered to contain a stack overflow via the comment parameter in the function FUN_004192cc. | |||
| 7.5 HIGH | 7.8 HIGH | ||
Tenda AX1806 v1.0.0.1 was discovered to contain a heap overflow via the mac parameter in the function GetParentControlInfo. This vulnerability allows attackers to cause a Denial of Service (DoS). | |||
| 7.5 HIGH | 7.8 HIGH | ||
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the shareSpeed parameter in the function fromSetWifiGusetBasic. This vulnerability allows attackers to cause a Denial of Service (DoS). | |||
| 7.5 HIGH | 7.8 HIGH | ||
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the wanMTU parameter in the function fromAdvSetMacMtuWan. This vulnerability allows attackers to cause a Denial of Service (DoS). | |||
| 7.5 HIGH | 7.8 HIGH | ||
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the timeZone parameter in the function form_fast_setting_wifi_set. This vulnerability allows attackers to cause a Denial of Service (DoS). | |||
| 7.5 HIGH | 7.8 HIGH | ||
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the list parameter in the function fromSetIpMacBind. This vulnerability allows attackers to cause a Denial of Service (DoS). | |||