W15e
Vendor:
First CVE: Sep 17, 2017 · Active for 8 years
33
Total CVEs
More Total CVEs than 96% of tracked products
6.6
Avg CVEs / Year
Higher CVE frequency than 91% of tracked products
8.0
Avg CVSS
Higher Avg CVSS than 69% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact W15e over time
Volume of CVEsAvg CVSS Base Score
First CVE
Sep 17, 2017
8 years ago
Most Recent CVE
Mar 9, 2026
138 days ago
CVE Severity & Scoring
W15e33 CVEs
12%
79%
9%
All CVEs352,427 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local4 (12.1%)
Network29 (87.9%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low33 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None31 (93.9%)
Unknown0 (0.0%)
Required2 (6.1%)
Privileges Required
Low19 (57.6%)
High4 (12.1%)
None10 (30.3%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (33 CVEs).
33 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-40843MEDIUM The Tenda AC1200 V-W15Ev2 V15.11.0.10(1576) router is vulnerable to improper authorization / improper session management that allows the router login page to be bypassed. This lead | Nov 15, 2022 | 4.9 | 43 | NO | YES |
CVE-2022-42058CRITICAL Tenda AC1200 Router Model W15Ev2 V15.11.0.10(1576) was discovered to contain a stack overflow via the setRemoteWebManage function. This vulnerability allows attackers to cause a De | Nov 15, 2022 | 9.8 | 30 | NO | NO |
CVE-2023-27063CRITICAL Tenda V15V1.0 V15.11.0.14(1521_3190_1058) was discovered to contain a buffer overflow vulnerability via the DNSDomainName parameter in the formModifyDnsForward function. This vulne | Mar 13, 2023 | 9.8 | 29 | NO | NO |
CVE-2023-27061CRITICAL Tenda V15V1.0 V15.11.0.14(1521_3190_1058) was discovered to contain a buffer overflow vulnerability via the wifiFilterListRemark parameter in the modifyWifiFilterRules function. Th | Mar 13, 2023 | 9.8 | 29 | NO | NO |
CVE-2024-4122HIGH A vulnerability classified as critical was found in Tenda W15E 15.11.0.14. Affected by this vulnerability is the function formSetDebugCfg of the file /goform/setDebugCfg. The manip | Apr 24, 2024 | 8.8 | 26 | NO | NO |
CVE-2022-42053HIGH Tenda AC1200 Router Model W15Ev2 V15.11.0.10(1576) was discovered to contain a command injection vulnerability via the PortMappingServer parameter in the setPortMapping function. | Nov 15, 2022 | 7.8 | 26 | NO | NO |
CVE-2022-41396HIGH Tenda AC1200 Router Model W15Ev2 V15.11.0.10(1576) was discovered to contain multiple command injection vulnerabilities in the function setIPsecTunnelList via the IPsecLocalNet and | Nov 15, 2022 | 7.8 | 26 | NO | NO |
CVE-2022-41395HIGH Tenda AC1200 Router Model W15Ev2 V15.11.0.10(1576) was discovered to contain a command injection vulnerability via the dmzHost parameter in the setDMZ function. | Nov 15, 2022 | 7.8 | 26 | NO | NO |
CVE-2022-40847HIGH In Tenda AC1200 Router model W15Ev2 V15.11.0.10(1576), there exists a command injection vulnerability in the function formSetFixTools. This vulnerability allows attackers to run ar | Nov 15, 2022 | 7.8 | 26 | NO | NO |
CVE-2024-4123HIGH A vulnerability, which was classified as critical, has been found in Tenda W15E 15.11.0.14. Affected by this issue is the function formSetPortMapping of the file /goform/SetPortMap | Apr 24, 2024 | 8.8 | 25 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (33 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
1 CVE
3.0% of CVEs· 96th percentile
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (33 CVEs).
Media Mentions
Signals from CVEs in this product scope (33 CVEs).
Top CNAs Publishing CVEs For W15e
Top CWEs
Versions
No cataloged versions.