Vulnerability Description
Tenda AC6 AC1200 Smart Dual-Band WiFi Router 15.03.06.50_multi was discovered to contain a cross-site scripting (XSS) vulnerability via the deviceId parameter in the Parental Control module.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Tenda | Ac6 Firmware | 15.03.06.50_multi |
| Tenda | Ac6 | - |
Related Weaknesses (CWE)
References
- http://packetstormsecurity.com/files/173029/Tenda-AC6-AC1200-15.03.06.50_multi-CExploitThird Party AdvisoryVDB Entry
- http://packetstormsecurity.com/files/173029/Tenda-AC6-AC1200-15.03.06.50_multi-CExploitThird Party AdvisoryVDB Entry
FAQ
What is CVE-2022-40010?
CVE-2022-40010 is a vulnerability with a CVSS score of 5.4 (MEDIUM). Tenda AC6 AC1200 Smart Dual-Band WiFi Router 15.03.06.50_multi was discovered to contain a cross-site scripting (XSS) vulnerability via the deviceId parameter in the Parental Control module.
How severe is CVE-2022-40010?
CVE-2022-40010 has been rated MEDIUM with a CVSS base score of 5.4/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-40010?
Check the references section above for vendor advisories and patch information. Affected products include: Tenda Ac6 Firmware, Tenda Ac6.