CVE-2024-46435: Tenda w18e Firmware
High severity, CVSS 8.0. EPSS: 0.8% chance of exploitation in the next 30 days.
A stack overflow vulnerability in the Tenda W18E V16.01.0.8(1625) web management portal allows an authenticated remote attacker to cause a denial of service or potentially execute arbitrary code. This vulnerability occurs due to improper input validation when handling user-supplied data in the delFacebookPic function.
Affected products
- Tenda w18e Firmware: version 16.01.0.8(1625) only
Published 2025-02-10. Last modified 2026-06-17.