Tenda AX9 V22.03.01.46 was discovered to contain a SQL command injection vulnerability in the 'setDeviceInfo' feature through the 'mac' parameter at /goform/setModules.
2023-12-07T16:15:07.203
2024-11-21T08:33:23.327
Modified
CVSSv3.1: 9.8 (CRITICAL)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | tenda | ax9_firmware | 22.03.01.46 | Yes |
Hardware | tenda | ax9 | - | No |