2 results (0.003 seconds)

CVSS: 5.5EPSS: 0%CPEs: 2EXPL: 1

07 Feb 2024 — An issue in Shenzen Tenda Technology CP3V2.0 V11.10.00.2311090948 allows a local attacker to obtain sensitive information via the password component. Un problema en Shenzen Tenda Technology CP3V2.0 V11.10.00.2311090948 permite a un atacante local obtener información confidencial a través del componente de contraseña. • https://github.com/minj-ae/CVE-2024-24488 • CWE-312: Cleartext Storage of Sensitive Information •

CVSS: 10.0EPSS: 7%CPEs: 10EXPL: 1

27 Feb 2023 — Certain Tenda products are vulnerable to command injection. This affects Tenda CP7 Tenda CP7<=V11.10.00.2211041403 and Tenda CP3 v.10 Tenda CP3 v.10<=V20220906024_2025 and Tenda IT7-PCS Tenda IT7-PCS<=V2209020914 and Tenda IT7-LCS Tenda IT7-LCS<=V2209020914 and Tenda IT7-PRS Tenda IT7-PRS<=V2209020908. • https://github.com/fxc233/iot-vul/tree/main/Tenda/IPC • CWE-77: Improper Neutralization of Special Elements used in a Command ('Command Injection') •