Metrics
Affected Vendors & Products
Tue, 25 Mar 2025 18:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Tenda
Tenda w18e Tenda w18e Firmware |
|
CPEs | cpe:2.3:h:tenda:w18e:-:*:*:*:*:*:*:* cpe:2.3:o:tenda:w18e_firmware:16.01.0.8\(1625\):*:*:*:*:*:*:* |
|
Vendors & Products |
Tenda
Tenda w18e Tenda w18e Firmware |
Mon, 10 Feb 2025 22:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_1
|
cvssV3_1
|
Mon, 10 Feb 2025 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-284 | |
Metrics |
cvssV3_1
|
Mon, 10 Feb 2025 19:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Tenda W18E V16.01.0.8(1625) is vulnerable to Incorrect Access Control. Unauthorized password change via the web management portal allows an unauthenticated remote attacker to change the administrator password by sending a specially crafted HTTP POST request to the setLoginPassword function, bypassing the authentication mechanism. | |
References |
|

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-02-10T21:47:12.104Z
Reserved: 2024-09-11T00:00:00.000Z
Link: CVE-2024-46430

Updated: 2025-02-10T20:31:11.709Z

Status : Analyzed
Published: 2025-02-10T19:15:38.273
Modified: 2025-03-25T18:12:41.753
Link: CVE-2024-46430

No data.