Critical severity9.8NVD Advisory· Published Jun 4, 2024· Updated Jun 17, 2026
CVE-2024-36604
CVE-2024-36604
Description
Tenda O3V2 v1.0.0.12(3880) was discovered to contain a Blind Command Injection via stpEn parameter in the SetStp function. This vulnerability allows attackers to execute arbitrary commands with root privileges.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:o:tenda:o3_firmware:1.0.0.12\(3880\):*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- exzettabyte.me/blind-command-injection-in-stp-service-on-tenda-o3v2/nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.