0.036
EPSS

CVE-2020-15916

CVSSv4: NA | CVSSv3: 9.8 | CVSSv2: 10 | VMScore: 1000 | EPSS: 0.03632 | KEV: Not Included
Published: 23/07/2020 Updated: 21/11/2024

Vulnerability Summary

goform/AdvSetLanip endpoint on Tenda AC15 AC1900 15.03.05.19 devices allows remote malicious users to execute arbitrary system commands via shell metacharacters in the lanIp POST parameter.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

tenda ac15 firmware 15.03.05.19

Github Repositories

This project is a PoC for exploiting CVE-2020-15916, a vulnerability that allows unauthorized changes to the LAN configuration of a device

EN GenLANConfigAttack - is a PoC for exploiting CVE-2020-15916, a vulnerability that allows unauthorized changes to the LAN configuration of a device Features Exploits LAN configuration vulnerability Sends malicious payload to alter network settings Bypasses security mechanisms for gaining control over the LAN How to Use Clone this repository: git clone githubcom/