📦

m3

Vendor: tenda

Actively Exploited 0 CISA KEV List
PoC / Exploits 0 Code Available
Total RCEs 21 Remote Access
Total CVEs 59 Total Indexed
Avg. EPSS 2.20% Exploit Prob.
Latest CVE CVE-2026-5567 Apr 05

Security Vulnerability Index

Page 4 / 6
7.5 CVSS

Tenda M3 V1.0.0.12 was discovered to contain a stack overflow via the function formSetAPCfg.

EPSS: 1.08%
7.5 CVSS

Tenda M3 V1.0.0.12 was discovered to contain multiple stack overflow vulnerabilities via the ssidList, storeName, and trademark parameters in the function formSetStoreWeb.

EPSS: 1.10%
7.5 CVSS

Tenda M3 V1.0.0.12 was discovered to contain a stack overflow via the function formMasterMng.

EPSS: 13.65%
7.5 CVSS

Tenda M3 V1.0.0.12 was discovered to contain a stack overflow via the items parameter in the function formdelMasteraclist.

EPSS: 1.10%
9.8 CVSS

Tenda M3 1.10 V1.0.0.12(4856) was discovered to contain a command injection vulnerability via the component /cgi-bin/uploadAccessCodePic.

EPSS: 2.87%
9.8 CVSS

Tenda M3 1.10 V1.0.0.12(4856) was discovered to contain a command injection vulnerability via the component /goform/SetInternetLanInfo.

EPSS: 2.73%
9.8 CVSS

Tenda M3 1.10 V1.0.0.12(4856) was discovered to contain a command injection vulnerability via the component /goform/SetLanInfo.

EPSS: 2.65%
9.8 CVSS

Tenda M3 1.10 V1.0.0.12(4856) was discovered to contain a command injection vulnerability via the component /goform/setWorkmode.

EPSS: 2.65%
9.8 CVSS

Tenda M3 1.10 V1.0.0.12(4856) was discovered to contain a command injection vulnerability via the component /goform/setPicListItem.

EPSS: 2.65%
9.8 CVSS

Tenda M3 1.10 V1.0.0.12(4856) was discovered to contain a command injection vulnerability via the component /goform/setAdInfoDetail.

EPSS: 2.65%