CVE-2022-41396

Severity CVSS v4.0:
Pending analysis
Type:
CWE-78 OS Command Injections
Publication date:
15/11/2022
Last modified:
30/04/2025

Description

Tenda AC1200 Router Model W15Ev2 V15.11.0.10(1576) was discovered to contain multiple command injection vulnerabilities in the function setIPsecTunnelList via the IPsecLocalNet and IPsecRemoteNet parameters.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:tenda:w15e_firmware:15.11.0.10\(1576\):*:*:*:*:*:*:*
cpe:2.3:h:tenda:w15e:2.0:*:*:*:*:*:*:*