Tenda AX12 v22.03.01.21CN was discovered to contain a stack overflow via the ssid parameter at /goform/fastsettingwifiset .
Tenda AX12 V22.03.01.21CN was found to have a command injection vulnerability via /goform/setMacFilterCfg function.
Tenda AX12 V22.03.01.21CN was discovered to contain a Cross-Site Request Forgery (CSRF) via /goform/SysToolRestoreSet .
A Buffer Overflow vulnerability exists in Tenda Router AX12 V22.03.01.21CN in the sub422CE4 function in the goform/setIPv6Status binary file /usr/sbin/httpd via the conType parameter, which causes a Denial of Service.
A Buffer Overflow vulnerability exists in Tenda Router AX12 V22.03.01.21CN in the sub422CE4 function in page /goform/setIPv6Status via the prefixDelegate parameter, which causes a Denial of Service.
Tenda AX12 v22.03.01.21cn was discovered to contain a stack overflow via the lanIp parameter in /goform/AdvSetLanIp.
Tenda AX12 V22.03.01.21CN was discovered to contain a Cross-Site Request Forgery (CSRF) via the function sub42E328 at /goform/SysToolReboot.
Tenda AX12 V22.03.01.21CN was discovered to contain a Cross-Site Request Forgery (CSRF) via the function sub422168 at /goform/WifiExtraSet.