Tenhot develops a narrow line of thermal wireless sensor and gateway products (TWS series) that appear in industrial and environmental monitoring deployments, with observed vulnerability clustering around OS command injection and insufficient specification in firmware components. Current severity, exploitation activity, and exposure metrics are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Tenhot over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-37861CRITICAL There is a remote code execution (RCE) vulnerability in Tenhot TWS-100 V4.0-201809201424 router device. It is necessary to know that the device account password is allowed to escap | Sep 15, 2022 | 9.8 | 30 | NO | NO |
CVE-2023-51217HIGH An issue discovered in TenghuTOS TWS-200 firmware version:V4.0-201809201424 allows a remote attacker to execute arbitrary code via crafted command on the ping page component. | Jan 18, 2024 | 8.8 | 22 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Tenhot.
Media articles that mention a CVE ID that affects a product developed by Tenhot — matched by CVE ID, not by vendor name.