Vulnerability Database

308,926

Total vulnerabilities in the database

CVE-2023-47422

An access control issue in /usr/sbin/httpd in Tenda TX9 V1 V22.03.02.54, Tenda AX3 V3 V16.03.12.11, Tenda AX9 V1 V22.03.01.46, and Tenda AX12 V1 V22.03.01.46 allows attackers to bypass authentication on any endpoint via a crafted URL.

  • Published: Feb 20, 2024
  • Updated: Nov 16, 2025
  • CVE: CVE-2023-47422
  • Severity: High
  • Exploit:

CVSS v3:

  • Severity: High
  • Score: 8.8
  • AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Software From Fixed in
tenda / tx9_firmware 22.03.02.54 22.03.02.54.x
tenda / ax3_firmware 16.03.12.11 16.03.12.11.x
tenda / ax9_firmware 22.03.01.46 22.03.01.46.x
tenda / ax12_firmware 22.03.01.46 22.03.01.46.x