Metrics
Affected Vendors & Products
Fri, 02 Jan 2026 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tenda
Tenda w6-s Tenda w6-s Firmware |
|
| CPEs | cpe:2.3:h:tenda:w6-s:-:*:*:*:*:*:*:* cpe:2.3:o:tenda:w6-s_firmware:1.0.0.4\(510\):*:*:*:*:*:*:* |
|
| Vendors & Products |
Tenda
Tenda w6-s Tenda w6-s Firmware |
Tue, 30 Dec 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 30 Dec 2025 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in Tenda W6-S 1.0.0.4(510). This affects the function TendaAte of the file /goform/ate of the component ATE Service. Performing manipulation results in os command injection. The attack may be initiated remotely. The exploit has been made public and could be used. | |
| Title | Tenda W6-S ATE Service ate TendaAte os command injection | |
| Weaknesses | CWE-77 CWE-78 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-12-30T15:32:07.822Z
Updated: 2025-12-30T15:35:22.187Z
Reserved: 2025-12-29T09:20:14.392Z
Link: CVE-2025-15254
Updated: 2025-12-30T15:35:06.274Z
Status : Analyzed
Published: 2025-12-30T16:15:44.237
Modified: 2026-01-02T21:20:05.950
Link: CVE-2025-15254
No data.