tendacn CVE Vulnerabilities & Metrics

Focus on tendacn vulnerabilities and metrics.

Last updated: 08 Mar 2025, 23:25 UTC

About tendacn Security Exposure

This page consolidates all known Common Vulnerabilities and Exposures (CVEs) associated with tendacn. We track both calendar-based metrics (using fixed periods) and rolling metrics (using gliding windows) to give you a comprehensive view of security trends and risk evolution. Use these insights to assess risk and plan your patching strategy.

For a broader perspective on cybersecurity threats, explore the comprehensive list of CVEs by vendor and product. Stay updated on critical vulnerabilities affecting major software and hardware providers.

Global CVE Overview

Total tendacn CVEs: 143
Earliest CVE date: 21 May 2017, 22:29 UTC
Latest CVE date: 13 Nov 2024, 15:15 UTC

Latest CVE reference: CVE-2024-50854

Rolling Stats

30-day Count (Rolling): 0
365-day Count (Rolling): 27

Calendar-based Variation

Calendar-based Variation compares a fixed calendar period (e.g., this month versus the same month last year), while Rolling Growth Rate uses a continuous window (e.g., last 30 days versus the previous 30 days) to capture trends independent of calendar boundaries.

Variations & Growth

Month Variation (Calendar): 0%
Year Variation (Calendar): 8.0%

Month Growth Rate (30-day Rolling): 0.0%
Year Growth Rate (365-day Rolling): 8.0%

Monthly CVE Trends (current vs previous Year)

Annual CVE Trends (Last 20 Years)

Critical tendacn CVEs (CVSS ≥ 9) Over 20 Years

CVSS Stats

Average CVSS: 4.01

Max CVSS: 10.0

Critical CVEs (≥9): 12

CVSS Range vs. Count

Range Count
0.0-3.9 67
4.0-6.9 21
7.0-8.9 43
9.0-10.0 12

CVSS Distribution Chart

Top 5 Highest CVSS tendacn CVEs

These are the five CVEs with the highest CVSS scores for tendacn, sorted by severity first and recency.

All CVEs for tendacn

CVE-2024-50854 tendacn vulnerability CVSS: 0 13 Nov 2024, 15:15 UTC

Tenda G3 v3.0 v15.11.0.20 was discovered to contain a stack overflow via the formSetPortMapping function.

CVE-2024-50853 tendacn vulnerability CVSS: 0 13 Nov 2024, 15:15 UTC

Tenda G3 v3.0 v15.11.0.20 was discovered to contain a command injection vulnerability via the formSetDebugCfg function.

CVE-2024-50852 tendacn vulnerability CVSS: 0 13 Nov 2024, 15:15 UTC

Tenda G3 v3.0 v15.11.0.20 was discovered to contain a command injection vulnerability via the formSetUSBPartitionUmount function.

CVE-2024-46628 tendacn vulnerability CVSS: 0 26 Sep 2024, 20:15 UTC

Tenda G3 Router firmware v15.03.05.05 was discovered to contain a remote code execution (RCE) vulnerability via the usbPartitionName parameter in the formSetUSBPartitionUmount function.

CVE-2024-8224 tendacn vulnerability CVSS: 9.0 27 Aug 2024, 23:15 UTC

A vulnerability, which was classified as critical, has been found in Tenda G3 15.11.0.20. This issue affects the function formSetDebugCfg of the file /goform/setDebugCfg. The manipulation of the argument enable/level/module leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

CVE-2024-42954 tendacn vulnerability CVSS: 0 15 Aug 2024, 17:15 UTC

Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the page parameter in the fromwebExcptypemanFilter function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.

CVE-2024-42953 tendacn vulnerability CVSS: 0 15 Aug 2024, 17:15 UTC

Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the PPW parameter in the fromWizardHandle function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.

CVE-2024-42949 tendacn vulnerability CVSS: 0 15 Aug 2024, 17:15 UTC

Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the qos parameter in the fromqossetting function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.

CVE-2024-42945 tendacn vulnerability CVSS: 0 15 Aug 2024, 17:15 UTC

Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the page parameter in the fromAddressNat function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.

CVE-2024-42942 tendacn vulnerability CVSS: 0 15 Aug 2024, 17:15 UTC

Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the page parameter in the frmL7ImForm function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.

CVE-2024-7581 tendacn vulnerability CVSS: 9.0 07 Aug 2024, 15:15 UTC

A vulnerability classified as critical has been found in Tenda A301 15.13.08.12. This affects the function formWifiBasicSet of the file /goform/WifiBasicSet. The manipulation of the argument security leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

CVE-2024-41473 tendacn vulnerability CVSS: 0 25 Jul 2024, 22:15 UTC

Tenda FH1201 v1.2.0.14 was discovered to contain a command injection vulnerability via the mac parameter at ip/goform/WriteFacMac

CVE-2024-41468 tendacn vulnerability CVSS: 0 25 Jul 2024, 22:15 UTC

Tenda FH1201 v1.2.0.14 was discovered to contain a command injection vulnerability via the cmdinput parameter at /goform/exeCommand

CVE-2024-41466 tendacn vulnerability CVSS: 0 24 Jul 2024, 21:15 UTC

Tenda FH1201 v1.2.0.14 was discovered to contain a stack-based buffer overflow vulnerability via the page parameter at ip/goform/NatStaticSetting.

CVE-2024-41465 tendacn vulnerability CVSS: 0 24 Jul 2024, 21:15 UTC

Tenda FH1201 v1.2.0.14 was discovered to contain a stack-based buffer overflow vulnerability via the funcpara1 parameter at ip/goform/setcfm.

CVE-2024-41464 tendacn vulnerability CVSS: 0 24 Jul 2024, 21:15 UTC

Tenda FH1201 v1.2.0.14 was discovered to contain a stack-based buffer overflow vulnerability via the mitInterface parameter in ip/goform/RouteStatic

CVE-2024-41463 tendacn vulnerability CVSS: 0 24 Jul 2024, 21:15 UTC

Tenda FH1201 v1.2.0.14 was discovered to contain a stack-based buffer overflow vulnerability via the entrys parameter at ip/goform/addressNat.

CVE-2024-41462 tendacn vulnerability CVSS: 0 24 Jul 2024, 21:15 UTC

Tenda FH1201 v1.2.0.14 was discovered to contain a stack-based buffer overflow vulnerability via the page parameter at ip/goform/DhcpListClient.

CVE-2024-41461 tendacn vulnerability CVSS: 0 24 Jul 2024, 21:15 UTC

Tenda FH1201 v1.2.0.14 was discovered to contain a stack-based buffer overflow vulnerability via the list1 parameter at ip/goform/DhcpListClient.

CVE-2024-41460 tendacn vulnerability CVSS: 0 24 Jul 2024, 21:15 UTC

Tenda FH1201 v1.2.0.14 was discovered to contain a stack-based buffer overflow vulnerability via the entrys parameter at ip/goform/RouteStatic.

CVE-2024-41459 tendacn vulnerability CVSS: 0 24 Jul 2024, 21:15 UTC

Tenda FH1201 v1.2.0.14 was discovered to contain a stack-based buffer overflow vulnerability via the PPPOEPassword parameter at ip/goform/QuickIndex.

CVE-2024-35338 tendacn vulnerability CVSS: 0 16 Jul 2024, 16:15 UTC

Tenda i29V1.0 V1.0.0.5 was discovered to contain a hardcoded password for root.

CVE-2024-33182 tendacn vulnerability CVSS: 0 16 Jul 2024, 16:15 UTC

Tenda AC18 V15.03.3.10_EN was discovered to contain a stack-based buffer overflow vulnerability via the deviceId parameter at ip/goform/addWifiMacFilter.

CVE-2024-33180 tendacn vulnerability CVSS: 0 16 Jul 2024, 16:15 UTC

Tenda AC18 V15.03.3.10_EN was discovered to contain a stack-based buffer overflow vulnerability via the deviceId parameter at ip/goform/saveParentControlInfo.

CVE-2024-6403 tendacn vulnerability CVSS: 6.8 28 Jun 2024, 17:15 UTC

A vulnerability, which was classified as critical, has been found in Tenda A301 15.13.08.12. Affected by this issue is the function formWifiBasicSet of the file /goform/SetOnlineDevName. The manipulation of the argument devName leads to stack-based buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-269948. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

CVE-2024-6402 tendacn vulnerability CVSS: 6.8 28 Jun 2024, 17:15 UTC

A vulnerability classified as critical was found in Tenda A301 15.13.08.12. Affected by this vulnerability is the function fromSetWirelessRepeat of the file /goform/SetOnlineDevName. The manipulation of the argument devName leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-269947. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

CVE-2024-6189 tendacn vulnerability CVSS: 9.0 20 Jun 2024, 14:15 UTC

A vulnerability was found in Tenda A301 15.13.08.12. It has been classified as critical. Affected is the function fromSetWirelessRepeat of the file /goform/WifiExtraSet. The manipulation of the argument wpapsk_crypto leads to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-269160. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

CVE-2024-24488 tendacn vulnerability CVSS: 0 07 Feb 2024, 20:15 UTC

An issue in Shenzen Tenda Technology CP3V2.0 V11.10.00.2311090948 allows a local attacker to obtain sensitive information via the password component.

CVE-2024-0932 tendacn vulnerability CVSS: 5.8 26 Jan 2024, 17:15 UTC

A vulnerability, which was classified as critical, has been found in Tenda AC10U 15.03.06.49_multi_TDE01. This issue affects the function setSmartPowerManagement. The manipulation of the argument time leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-252137 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

CVE-2024-0931 tendacn vulnerability CVSS: 5.8 26 Jan 2024, 17:15 UTC

A vulnerability classified as critical was found in Tenda AC10U 15.03.06.49_multi_TDE01. This vulnerability affects the function saveParentControlInfo. The manipulation of the argument deviceId/time/urls leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-252136. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

CVE-2024-0930 tendacn vulnerability CVSS: 5.8 26 Jan 2024, 16:15 UTC

A vulnerability classified as critical has been found in Tenda AC10U 15.03.06.49_multi_TDE01. This affects the function fromSetWirelessRepeat. The manipulation of the argument wpapsk_crypto leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-252135. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

CVE-2024-0929 tendacn vulnerability CVSS: 5.8 26 Jan 2024, 16:15 UTC

A vulnerability was found in Tenda AC10U 15.03.06.49_multi_TDE01. It has been rated as critical. Affected by this issue is the function fromNatStaticSetting. The manipulation of the argument page leads to stack-based buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-252134 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

CVE-2024-0928 tendacn vulnerability CVSS: 5.8 26 Jan 2024, 16:15 UTC

A vulnerability was found in Tenda AC10U 15.03.06.49_multi_TDE01. It has been declared as critical. Affected by this vulnerability is the function fromDhcpListClient. The manipulation of the argument page/listN leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-252133 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

CVE-2024-0927 tendacn vulnerability CVSS: 5.8 26 Jan 2024, 15:15 UTC

A vulnerability was found in Tenda AC10U 15.03.06.49_multi_TDE01. It has been classified as critical. Affected is the function fromAddressNat. The manipulation of the argument entrys/mitInterface/page leads to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-252132. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

CVE-2024-0926 tendacn vulnerability CVSS: 5.8 26 Jan 2024, 15:15 UTC

A vulnerability was found in Tenda AC10U 15.03.06.49_multi_TDE01 and classified as critical. This issue affects the function formWifiWpsOOB. The manipulation of the argument index leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-252131. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

CVE-2024-0925 tendacn vulnerability CVSS: 5.8 26 Jan 2024, 15:15 UTC

A vulnerability has been found in Tenda AC10U 15.03.06.49_multi_TDE01 and classified as critical. This vulnerability affects the function formSetVirtualSer. The manipulation of the argument list leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-252130 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

CVE-2024-0923 tendacn vulnerability CVSS: 5.8 26 Jan 2024, 14:15 UTC

A vulnerability, which was classified as critical, has been found in Tenda AC10U 15.03.06.49_multi_TDE01. Affected by this issue is the function formSetDeviceName. The manipulation of the argument devName leads to stack-based buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-252128. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

CVE-2024-0922 tendacn vulnerability CVSS: 5.8 26 Jan 2024, 14:15 UTC

A vulnerability classified as critical was found in Tenda AC10U 15.03.06.49_multi_TDE01. Affected by this vulnerability is the function formQuickIndex. The manipulation of the argument PPPOEPassword leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-252127. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

CVE-2024-0535 tendacn vulnerability CVSS: 9.0 15 Jan 2024, 03:15 UTC

A vulnerability classified as critical was found in Tenda PA6 1.0.1.21. Affected by this vulnerability is the function cgiPortMapAdd of the file /portmap of the component httpd. The manipulation of the argument groupName leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-250705 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

CVE-2023-44023 tendacn vulnerability CVSS: 0 27 Sep 2023, 15:19 UTC

Tenda AC10U v1.0 US_AC10UV1.0RTL_V15.03.06.49_multi_TDE01 was discovered to contain a stack overflow via the ssid parameter in the form_fast_setting_wifi_set function.

CVE-2023-44022 tendacn vulnerability CVSS: 0 27 Sep 2023, 15:19 UTC

Tenda AC10U v1.0 US_AC10UV1.0RTL_V15.03.06.49_multi_TDE01 was discovered to contain a stack overflow via the speed_dir parameter in the formSetSpeedWan function.

CVE-2023-44021 tendacn vulnerability CVSS: 0 27 Sep 2023, 15:19 UTC

Tenda AC10U v1.0 US_AC10UV1.0RTL_V15.03.06.49_multi_TDE01 was discovered to contain a stack overflow via the formSetClientState function.

CVE-2023-44020 tendacn vulnerability CVSS: 0 27 Sep 2023, 15:19 UTC

Tenda AC10U v1.0 US_AC10UV1.0RTL_V15.03.06.49_multi_TDE01 was discovered to contain a stack overflow via the security parameter in the formWifiBasicSet function.

CVE-2023-44019 tendacn vulnerability CVSS: 0 27 Sep 2023, 15:19 UTC

Tenda AC10U v1.0 US_AC10UV1.0RTL_V15.03.06.49_multi_TDE01 was discovered to contain a stack overflow via the mac parameter in the GetParentControlInfo function.

CVE-2023-44018 tendacn vulnerability CVSS: 0 27 Sep 2023, 15:19 UTC

Tenda AC10U v1.0 US_AC10UV1.0RTL_V15.03.06.49_multi_TDE01 was discovered to contain a stack overflow via the domain parameter in the add_white_node function.

CVE-2023-44017 tendacn vulnerability CVSS: 0 27 Sep 2023, 15:19 UTC

Tenda AC10U v1.0 US_AC10UV1.0RTL_V15.03.06.49_multi_TDE01 was discovered to contain a stack overflow via the timeZone parameter in the fromSetSysTime function.

CVE-2023-44016 tendacn vulnerability CVSS: 0 27 Sep 2023, 15:19 UTC

Tenda AC10U v1.0 US_AC10UV1.0RTL_V15.03.06.49_multi_TDE01 was discovered to contain a stack overflow via the deviceId parameter in the addWifiMacFilter function.

CVE-2023-44015 tendacn vulnerability CVSS: 0 27 Sep 2023, 15:19 UTC

Tenda AC10U v1.0 US_AC10UV1.0RTL_V15.03.06.49_multi_TDE01 was discovered to contain a stack overflow via the schedEndTime parameter in the setSchedWifi function.

CVE-2023-44014 tendacn vulnerability CVSS: 0 27 Sep 2023, 15:19 UTC

Tenda AC10U v1.0 US_AC10UV1.0RTL_V15.03.06.49_multi_TDE01 was discovered to contain multiple stack overflows in the formSetMacFilterCfg function via the macFilterType and deviceList parameters.

CVE-2023-44013 tendacn vulnerability CVSS: 0 27 Sep 2023, 15:19 UTC

Tenda AC10U v1.0 US_AC10UV1.0RTL_V15.03.06.49_multi_TDE01 was discovered to contain a stack overflow via the list parameter in the fromSetIpMacBind function.

CVE-2023-40942 tendacn vulnerability CVSS: 0 07 Sep 2023, 15:15 UTC

Tenda AC9 V3.0BR_V15.03.06.42_multi_TD01 was discovered stack overflow via parameter 'firewall_value' at url /goform/SetFirewallCfg.

CVE-2023-37144 tendacn vulnerability CVSS: 0 07 Jul 2023, 14:15 UTC

Tenda AC10 v15.03.06.26 was discovered to contain a command injection vulnerability via the mac parameter in the function formWriteFacMac.

CVE-2022-45661 tendacn vulnerability CVSS: 0 02 Dec 2022, 18:15 UTC

Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the time parameter in the setSmartPowerManagement function.

CVE-2022-45660 tendacn vulnerability CVSS: 0 02 Dec 2022, 18:15 UTC

Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the schedStartTime parameter in the setSchedWifi function.

CVE-2022-45659 tendacn vulnerability CVSS: 0 02 Dec 2022, 18:15 UTC

Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the wpapsk_crypto parameter in the fromSetWirelessRepeat function.

CVE-2022-45658 tendacn vulnerability CVSS: 0 02 Dec 2022, 18:15 UTC

Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the schedEndTime parameter in the setSchedWifi function.

CVE-2022-45657 tendacn vulnerability CVSS: 0 02 Dec 2022, 18:15 UTC

Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the list parameter in the fromSetIpMacBind function.

CVE-2022-45656 tendacn vulnerability CVSS: 0 02 Dec 2022, 18:15 UTC

Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the time parameter in the fromSetSysTime function.

CVE-2022-45655 tendacn vulnerability CVSS: 0 02 Dec 2022, 18:15 UTC

Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the timeZone parameter in the form_fast_setting_wifi_set function.

CVE-2022-45654 tendacn vulnerability CVSS: 0 02 Dec 2022, 18:15 UTC

Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the ssid parameter in the form_fast_setting_wifi_set function.

CVE-2022-45653 tendacn vulnerability CVSS: 0 02 Dec 2022, 18:15 UTC

Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the page parameter in the fromNatStaticSetting function.

CVE-2022-45652 tendacn vulnerability CVSS: 0 02 Dec 2022, 18:15 UTC

Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the startIp parameter in the formSetPPTPServer function.

CVE-2022-45651 tendacn vulnerability CVSS: 0 02 Dec 2022, 18:15 UTC

Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the list parameter in the formSetVirtualSer function.

CVE-2022-45650 tendacn vulnerability CVSS: 0 02 Dec 2022, 18:15 UTC

Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the firewallEn parameter in the formSetFirewallCfg function.

CVE-2022-45649 tendacn vulnerability CVSS: 0 02 Dec 2022, 18:15 UTC

Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the endIp parameter in the formSetPPTPServer function.

CVE-2022-45648 tendacn vulnerability CVSS: 0 02 Dec 2022, 18:15 UTC

Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the devName parameter in the formSetDeviceName function.

CVE-2022-45647 tendacn vulnerability CVSS: 0 02 Dec 2022, 18:15 UTC

Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the limitSpeed parameter in the formSetClientState function.

CVE-2022-45646 tendacn vulnerability CVSS: 0 02 Dec 2022, 18:15 UTC

Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the limitSpeedUp parameter in the formSetClientState function.

CVE-2022-45645 tendacn vulnerability CVSS: 0 02 Dec 2022, 18:15 UTC

Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the deviceMac parameter in the addWifiMacFilter function.

CVE-2022-45644 tendacn vulnerability CVSS: 0 02 Dec 2022, 18:15 UTC

Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the deviceId parameter in the formSetClientState function.

CVE-2022-45643 tendacn vulnerability CVSS: 0 02 Dec 2022, 18:15 UTC

Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the deviceId parameter in the addWifiMacFilter function.

CVE-2022-40869 tendacn vulnerability CVSS: 0 23 Sep 2022, 14:15 UTC

Tenda AC15 and AC18 routers V15.03.05.19 contain stack overflow vulnerabilities in the function fromDhcpListClient with a combined parameter "list*" ("%s%d","list").

CVE-2022-40865 tendacn vulnerability CVSS: 0 23 Sep 2022, 14:15 UTC

Tenda AC15 and AC18 routers V15.03.05.19 contain heap overflow vulnerabilities in the function setSchedWifi with the request /goform/openSchedWifi/

CVE-2022-40864 tendacn vulnerability CVSS: 0 23 Sep 2022, 14:15 UTC

Tenda AC15 and AC18 routers V15.03.05.19 contain stack overflow vulnerabilities in the function setSmartPowerManagement with the request /goform/PowerSaveSet

CVE-2022-40862 tendacn vulnerability CVSS: 0 23 Sep 2022, 14:15 UTC

Tenda AC15 and AC18 router V15.03.05.19 contains stack overflow vulnerability in the function fromNatStaticSetting with the request /goform/NatStaticSetting

CVE-2022-40860 tendacn vulnerability CVSS: 0 23 Sep 2022, 14:15 UTC

Tenda AC15 router V15.03.05.19 contains a stack overflow vulnerability in the function formSetQosBand->FUN_0007dd20 with request /goform/SetNetControlList

CVE-2022-40853 tendacn vulnerability CVSS: 0 23 Sep 2022, 14:15 UTC

Tenda AC15 router V15.03.05.19 contains a stack overflow via the list parameter at /goform/fast_setting_wifi_set

CVE-2022-38326 tendacn vulnerability CVSS: 0 15 Sep 2022, 20:15 UTC

Tenda AC15 WiFi Router V15.03.05.19_multi and AC18 WiFi Router V15.03.05.19_multi were discovered to contain a buffer overflow via the page parameter at /goform/NatStaticSetting.

CVE-2022-38325 tendacn vulnerability CVSS: 0 15 Sep 2022, 20:15 UTC

Tenda AC15 WiFi Router V15.03.05.19_multi and AC18 WiFi Router V15.03.05.19_multi were discovered to contain a buffer overflow via the filePath parameter at /goform/expandDlnaFile.

CVE-2022-36233 tendacn vulnerability CVSS: 0 19 Aug 2022, 22:15 UTC

Tenda AC9 V15.03.2.13 is vulnerable to Buffer Overflow via httpd, form_fast_setting_wifi_set. httpd.

CVE-2022-32386 tendacn vulnerability CVSS: 7.5 06 Jul 2022, 12:15 UTC

Tenda AC23 v16.03.07.44 was discovered to contain a buffer overflow via fromAdvSetMacMtuWan.

CVE-2022-32385 tendacn vulnerability CVSS: 7.5 06 Jul 2022, 12:15 UTC

Tenda AC23 v16.03.07.44 is vulnerable to Stack Overflow that will allow for the execution of arbitrary code (remote).

CVE-2022-32383 tendacn vulnerability CVSS: 7.5 06 Jul 2022, 12:15 UTC

Tenda AC23 v16.03.07.44 was discovered to contain a stack overflow via the AdvSetMacMtuWan function.

CVE-2022-32384 tendacn vulnerability CVSS: 5.8 01 Jul 2022, 21:15 UTC

Tenda AC23 v16.03.07.44 was discovered to contain a stack overflow via the security_5g parameter in the function formWifiBasicSet.

CVE-2022-31446 tendacn vulnerability CVSS: 10.0 14 Jun 2022, 03:15 UTC

Tenda AC18 router V15.03.05.19 and V15.03.05.05 was discovered to contain a remote code execution (RCE) vulnerability via the Mac parameter at ip/goform/WriteFacMac.

CVE-2022-26243 tendacn vulnerability CVSS: 7.8 23 Mar 2022, 19:15 UTC

Tenda AC10-1200 v15.03.06.23_EN was discovered to contain a buffer overflow in the setSmartPowerManagement function.

CVE-2021-38772 tendacn vulnerability CVSS: 7.8 23 Mar 2022, 19:15 UTC

Tenda AC10-1200 v15.03.06.23_EN was discovered to contain a buffer overflow via the list parameter in the fromSetIpMacBind function.

CVE-2021-38278 tendacn vulnerability CVSS: 7.5 23 Mar 2022, 19:15 UTC

Tenda AC10-1200 v15.03.06.23_EN was discovered to contain a buffer overflow via the urls parameter in the saveParentControlInfo function.

CVE-2021-45401 tendacn vulnerability CVSS: 7.5 18 Feb 2022, 18:15 UTC

A Command injection vulnerability exists in Tenda AC10U AC1200 Smart Dual-band Wireless Router AC10U V1.0 Firmware V15.03.06.49_multi via the setUsbUnload functionality. The vulnerability is caused because the client controlled "deviceName" value is passed directly to the "doSystemCmd" function.

CVE-2022-24172 tendacn vulnerability CVSS: 7.8 04 Feb 2022, 02:15 UTC

Tenda routers G1 and G3 v15.11.0.17(9502)_CN were discovered to contain a stack overflow in the function formAddDhcpBindRule. This vulnerability allows attackers to cause a Denial of Service (DoS) via the addDhcpRules parameter.

CVE-2022-24171 tendacn vulnerability CVSS: 7.5 04 Feb 2022, 02:15 UTC

Tenda routers G1 and G3 v15.11.0.17(9502)_CN were discovered to contain a command injection vulnerability in the function formSetPppoeServer. This vulnerability allows attackers to execute arbitrary commands via the pppoeServerIP, pppoeServerStartIP, and pppoeServerEndIP parameters.

CVE-2022-24170 tendacn vulnerability CVSS: 7.5 04 Feb 2022, 02:15 UTC

Tenda routers G1 and G3 v15.11.0.17(9502)_CN were discovered to contain a command injection vulnerability in the function formSetIpSecTunnel. This vulnerability allows attackers to execute arbitrary commands via the IPsecLocalNet and IPsecRemoteNet parameters.

CVE-2022-24169 tendacn vulnerability CVSS: 7.8 04 Feb 2022, 02:15 UTC

Tenda routers G1 and G3 v15.11.0.17(9502)_CN were discovered to contain a stack overflow in the function formIPMacBindAdd. This vulnerability allows attackers to cause a Denial of Service (DoS) via the IPMacBindRule parameter.

CVE-2022-24168 tendacn vulnerability CVSS: 7.5 04 Feb 2022, 02:15 UTC

Tenda routers G1 and G3 v15.11.0.17(9502)_CN were discovered to contain a command injection vulnerability in the function formSetIpGroup. This vulnerability allows attackers to execute arbitrary commands via the IPGroupStartIP and IPGroupEndIP parameters.

CVE-2022-24167 tendacn vulnerability CVSS: 7.5 04 Feb 2022, 02:15 UTC

Tenda routers G1 and G3 v15.11.0.17(9502)_CN were discovered to contain a command injection vulnerability in the function formSetDMZ. This vulnerability allows attackers to execute arbitrary commands via the dmzHost1 parameter.

CVE-2022-24166 tendacn vulnerability CVSS: 7.8 04 Feb 2022, 02:15 UTC

Tenda routers G1 and G3 v15.11.0.17(9502)_CN were discovered to contain a stack overflow in the function formSetSysTime. This vulnerability allows attackers to cause a Denial of Service (DoS) via the manualTime parameter.

CVE-2022-24165 tendacn vulnerability CVSS: 7.5 04 Feb 2022, 02:15 UTC

Tenda routers G1 and G3 v15.11.0.17(9502)_CN were discovered to contain a command injection vulnerability in the function formSetQvlanList. This vulnerability allows attackers to execute arbitrary commands via the qvlanIP parameter.

CVE-2022-24164 tendacn vulnerability CVSS: 7.8 04 Feb 2022, 02:15 UTC

Tenda routers G1 and G3 v15.11.0.17(9502)_CN were discovered to contain a stack overflow in the function formSetVirtualSer. This vulnerability allows attackers to cause a Denial of Service (DoS) via the DnsHijackRule parameter.

CVE-2021-45997 tendacn vulnerability CVSS: 7.8 04 Feb 2022, 02:15 UTC

Tenda routers G1 and G3 v15.11.0.17(9502)_CN were discovered to contain a stack overflow in the function formSetPortMapping. This vulnerability allows attackers to cause a Denial of Service (DoS) via the portMappingServer, portMappingProtocol, portMappingWan, porMappingtInternal, and portMappingExternal parameters.

CVE-2021-45996 tendacn vulnerability CVSS: 7.8 04 Feb 2022, 02:15 UTC

Tenda routers G1 and G3 v15.11.0.17(9502)_CN were discovered to contain a stack overflow in the function formSetPortMapping. This vulnerability allows attackers to cause a Denial of Service (DoS) via the portMappingServer, portMappingProtocol, portMappingWan, porMappingtInternal, and portMappingExternal parameters.

CVE-2021-45995 tendacn vulnerability CVSS: 7.8 04 Feb 2022, 02:15 UTC

Tenda routers G1 and G3 v15.11.0.17(9502)_CN were discovered to contain a stack overflow in the function formSetStaticRoute. This vulnerability allows attackers to cause a Denial of Service (DoS) via the staticRouteNet, staticRouteMask, and staticRouteGateway parameters.

CVE-2021-45994 tendacn vulnerability CVSS: 7.8 04 Feb 2022, 02:15 UTC

Tenda routers G1 and G3 v15.11.0.17(9502)_CN were discovered to contain a stack overflow in the function formDelDhcpRule. This vulnerability allows attackers to cause a Denial of Service (DoS) via the delDhcpIndex parameter.

CVE-2021-45993 tendacn vulnerability CVSS: 7.8 04 Feb 2022, 02:15 UTC

Tenda routers G1 and G3 v15.11.0.17(9502)_CN were discovered to contain a stack overflow in the function formIPMacBindModify. This vulnerability allows attackers to cause a Denial of Service (DoS) via the IPMacBindRuleIP and IPMacBindRuleMac parameters.

CVE-2021-45992 tendacn vulnerability CVSS: 7.8 04 Feb 2022, 02:15 UTC

Tenda routers G1 and G3 v15.11.0.17(9502)_CN were discovered to contain a stack overflow in the function formSetQvlanList. This vulnerability allows attackers to cause a Denial of Service (DoS) via the qvlanName parameter.

CVE-2021-45991 tendacn vulnerability CVSS: 7.8 04 Feb 2022, 02:15 UTC

Tenda routers G1 and G3 v15.11.0.17(9502)_CN were discovered to contain a stack overflow in the function formAddVpnUsers. This vulnerability allows attackers to cause a Denial of Service (DoS) via the vpnUsers parameter.

CVE-2021-45990 tendacn vulnerability CVSS: 7.5 04 Feb 2022, 02:15 UTC

Tenda routers G1 and G3 v15.11.0.17(9502)_CN were discovered to contain a command injection vulnerability in the function uploadPicture. This vulnerability allows attackers to execute arbitrary commands via the pic_name parameter.

CVE-2021-45989 tendacn vulnerability CVSS: 7.8 04 Feb 2022, 02:15 UTC

Tenda routers G1 and G3 v15.11.0.17(9502)_CN were discovered to contain a stack overflow in the function guestWifiRuleRefresh. This vulnerability allows attackers to cause a Denial of Service (DoS) via the qosGuestUpstream and qosGuestDownstream parameters.

CVE-2021-45988 tendacn vulnerability CVSS: 7.8 04 Feb 2022, 02:15 UTC

Tenda routers G1 and G3 v15.11.0.17(9502)_CN were discovered to contain a stack overflow in the function formAddDnsForward. This vulnerability allows attackers to cause a Denial of Service (DoS) via the DnsForwardRule parameter.

CVE-2021-45987 tendacn vulnerability CVSS: 7.5 04 Feb 2022, 02:15 UTC

Tenda routers G1 and G3 v15.11.0.17(9502)_CN were discovered to contain a command injection vulnerability in the function formSetNetCheckTools. This vulnerability allows attackers to execute arbitrary commands via the hostName parameter.

CVE-2021-45986 tendacn vulnerability CVSS: 7.5 04 Feb 2022, 02:15 UTC

Tenda routers G1 and G3 v15.11.0.17(9502)_CN were discovered to contain a command injection vulnerability in the function formSetUSBShareInfo. This vulnerability allows attackers to execute arbitrary commands via the usbOrdinaryUserName parameter.

CVE-2021-44352 tendacn vulnerability CVSS: 7.5 03 Dec 2021, 19:15 UTC

A Stack-based Buffer Overflow vulnerability exists in the Tenda AC15 V15.03.05.18_multi device via the list parameter in a post request in goform/SetIpMacBind.

CVE-2021-31627 tendacn vulnerability CVSS: 5.8 29 Oct 2021, 11:15 UTC

Buffer Overflow vulnerability in Tenda AC9 V1.0 through V15.03.05.19(6318), and AC9 V3.0 V15.03.06.42_multi, allows attackers to execute arbitrary code via the index parameter.

CVE-2021-31624 tendacn vulnerability CVSS: 5.8 29 Oct 2021, 11:15 UTC

Buffer Overflow vulnerability in Tenda AC9 V1.0 through V15.03.05.19(6318), and AC9 V3.0 V15.03.06.42_multi, allows attackers to execute arbitrary code via the urls parameter.

CVE-2020-22079 tendacn vulnerability CVSS: 7.5 29 Oct 2021, 11:15 UTC

Stack-based buffer overflow in Tenda AC-10U AC1200 Router US_AC10UV1.0RTL_V15.03.06.48_multi_TDE01 allows remote attackers to execute arbitrary code via the timeZone parameter to goform/SetSysTimeCfg.

CVE-2020-20746 tendacn vulnerability CVSS: 6.5 30 Sep 2021, 21:15 UTC

A stack-based buffer overflow in the httpd server on Tenda AC9 V15.03.06.60_EN allows remote attackers to execute arbitrary code or cause a denial of service (DoS) via a crafted POST request to /goform/SetStaticRouteCfg.

CVE-2021-27692 tendacn vulnerability CVSS: 10.0 16 Apr 2021, 00:15 UTC

Command Injection in Tenda G1 and G3 routers with firmware versions v15.11.0.17(9502)_CN or v15.11.0.16(9024)_CN allows remote attackers to execute arbitrary OS commands via a crafted "action/umountUSBPartition" request. This occurs because the "formSetUSBPartitionUmount" function executes the "doSystemCmd" function with untrusted input.

CVE-2021-27691 tendacn vulnerability CVSS: 10.0 16 Apr 2021, 00:15 UTC

Command Injection in Tenda G0 routers with firmware versions v15.11.0.6(9039)_CN and v15.11.0.5(5876)_CN , and Tenda G1 and G3 routers with firmware versions v15.11.0.17(9502)_CN or v15.11.0.16(9024)_CN allows remote attackers to execute arbitrary OS commands via a crafted action/setDebugCfg request. This occurs because the "formSetDebugCfg" function executes glibc's system function with untrusted input.

CVE-2020-28094 tendacn vulnerability CVSS: 5.0 28 Dec 2020, 07:15 UTC

On Tenda AC1200 (Model AC6) 15.03.06.51_multi devices, the default settings for the router speed test contain links to download malware named elive or CNKI E-Learning.

CVE-2020-28093 tendacn vulnerability CVSS: 6.5 28 Dec 2020, 07:15 UTC

On Tenda AC1200 (Model AC6) 15.03.06.51_multi devices, admin, support, user, and nobody have a password of 1234.

CVE-2020-24987 tendacn vulnerability CVSS: 6.8 04 Sep 2020, 20:15 UTC

Tenda AC18 Router through V15.03.05.05_EN and through V15.03.05.19(6318) CN devices could cause a remote code execution due to incorrect authentication handling of vulnerable logincheck() function in /usr/lib/lua/ngx_authserver/ngx_wdas.lua file if the administrator UI Interface is set to "radius".

CVE-2019-19506 tendacn vulnerability CVSS: 7.8 25 Jun 2020, 20:15 UTC

Tenda PA6 Wi-Fi Powerline extender 1.0.1.21 is vulnerable to a denial of service, caused by an error in the "homeplugd" process. By sending a specially crafted UDP packet, an attacker could exploit this vulnerability to cause the device to reboot.

CVE-2019-19505 tendacn vulnerability CVSS: 9.0 25 Jun 2020, 20:15 UTC

Tenda PA6 Wi-Fi Powerline extender 1.0.1.21 is vulnerable to a stack-based buffer overflow, caused by improper bounds checking by the "Wireless" section in the web-UI. By sending a specially crafted hostname, a remote attacker could overflow a buffer and execute arbitrary code on the system or cause the application to crash.

CVE-2019-16213 tendacn vulnerability CVSS: 9.0 25 Jun 2020, 20:15 UTC

Tenda PA6 Wi-Fi Powerline extender 1.0.1.21 could allow a remote authenticated attacker to execute arbitrary commands on the system. By sending a specially crafted string, an attacker could modify the device name of an attached PLC adapter to inject and execute arbitrary commands on the system with root privileges.

CVE-2020-13394 tendacn vulnerability CVSS: 7.5 22 May 2020, 17:15 UTC

An issue was discovered on Tenda AC6 V1.0 V15.03.05.19_multi_TD01, AC9 V1.0 V15.03.05.19(6318)_CN, AC9 V3.0 V15.03.06.42_multi, AC15 V1.0 V15.03.05.19_multi_TD01, and AC18 V15.03.05.19(6318_)_CN devices. There is a buffer overflow vulnerability in the router's web server -- httpd. While processing the /goform/SetNetControlList list parameter for a POST request, a value is directly used in a strcpy to a local variable placed on the stack, which overwrites the return address of a function. An attacker can construct a payload to carry out arbitrary code execution attacks.

CVE-2020-13393 tendacn vulnerability CVSS: 7.5 22 May 2020, 17:15 UTC

An issue was discovered on Tenda AC6 V1.0 V15.03.05.19_multi_TD01, AC9 V1.0 V15.03.05.19(6318)_CN, AC9 V3.0 V15.03.06.42_multi, AC15 V1.0 V15.03.05.19_multi_TD01, and AC18 V15.03.05.19(6318_)_CN devices. There is a buffer overflow vulnerability in the router's web server -- httpd. While processing the /goform/saveParentControlInfo deviceId and time parameters for a POST request, a value is directly used in a strcpy to a local variable placed on the stack, which overwrites the return address of a function. An attacker can construct a payload to carry out arbitrary code execution attacks.

CVE-2020-13392 tendacn vulnerability CVSS: 7.5 22 May 2020, 17:15 UTC

An issue was discovered on Tenda AC6 V1.0 V15.03.05.19_multi_TD01, AC9 V1.0 V15.03.05.19(6318)_CN, AC9 V3.0 V15.03.06.42_multi, AC15 V1.0 V15.03.05.19_multi_TD01, and AC18 V15.03.05.19(6318_)_CN devices. There is a buffer overflow vulnerability in the router's web server -- httpd. While processing the /goform/setcfm funcpara1 parameter for a POST request, a value is directly used in a sprintf to a local variable placed on the stack, which overwrites the return address of a function. An attacker can construct a payload to carry out arbitrary code execution attacks.

CVE-2020-13391 tendacn vulnerability CVSS: 7.5 22 May 2020, 17:15 UTC

An issue was discovered on Tenda AC6 V1.0 V15.03.05.19_multi_TD01, AC9 V1.0 V15.03.05.19(6318)_CN, AC9 V3.0 V15.03.06.42_multi, AC15 V1.0 V15.03.05.19_multi_TD01, and AC18 V15.03.05.19(6318_)_CN devices. There is a buffer overflow vulnerability in the router's web server -- httpd. While processing the /goform/SetSpeedWan speed_dir parameter for a POST request, a value is directly used in a sprintf to a local variable placed on the stack, which overwrites the return address of a function. An attacker can construct a payload to carry out arbitrary code execution attacks.

CVE-2020-13390 tendacn vulnerability CVSS: 7.5 22 May 2020, 17:15 UTC

An issue was discovered on Tenda AC6 V1.0 V15.03.05.19_multi_TD01, AC9 V1.0 V15.03.05.19(6318)_CN, AC9 V3.0 V15.03.06.42_multi, AC15 V1.0 V15.03.05.19_multi_TD01, and AC18 V15.03.05.19(6318_)_CN devices. There is a buffer overflow vulnerability in the router's web server -- httpd. While processing the /goform/addressNat entrys and mitInterface parameters for a POST request, a value is directly used in a sprintf to a local variable placed on the stack, which overwrites the return address of a function. An attacker can construct a payload to carry out arbitrary code execution attacks.

CVE-2020-13389 tendacn vulnerability CVSS: 7.5 22 May 2020, 17:15 UTC

An issue was discovered on Tenda AC6 V1.0 V15.03.05.19_multi_TD01, AC9 V1.0 V15.03.05.19(6318)_CN, AC9 V3.0 V15.03.06.42_multi, AC15 V1.0 V15.03.05.19_multi_TD01, and AC18 V15.03.05.19(6318_)_CN devices. There is a buffer overflow vulnerability in the router's web server -- httpd. While processing the /goform/openSchedWifi schedStartTime and schedEndTime parameters for a POST request, a value is directly used in a strcpy to a local variable placed on the stack, which overwrites the return address of a function. An attacker can construct a payload to carry out arbitrary code execution attacks.

CVE-2019-5072 tendacn vulnerability CVSS: 4.6 21 Nov 2019, 17:15 UTC

An exploitable command injection vulnerability exists in the /goform/WanParameterSetting functionality of Tenda AC9 Router AC1200 Smart Dual-Band Gigabit WiFi Route (AC9V1.0 Firmware V15.03.05.16multiTRU). A specially crafted HTTP POST request can cause a command injection in the DNS2 post parameters, resulting in code execution. An attacker can send HTTP POST request with command to trigger this vulnerability.

CVE-2019-5071 tendacn vulnerability CVSS: 7.2 21 Nov 2019, 17:15 UTC

An exploitable command injection vulnerability exists in the /goform/WanParameterSetting functionality of Tenda AC9 Router AC1200 Smart Dual-Band Gigabit WiFi Route (AC9V1.0 Firmware V15.03.05.16multiTRU). A specially crafted HTTP POST request can cause a command injection in the DNS1 post parameters, resulting in code execution. An attacker can send HTTP POST request with command to trigger this vulnerability.

CVE-2019-16412 tendacn vulnerability CVSS: 7.8 19 Sep 2019, 16:15 UTC

In goform/setSysTools on Tenda N301 wireless routers, attackers can trigger a device crash via a zero wanMTU value. (Prohibition of this zero value is only enforced within the GUI.)

CVE-2018-20373 tendacn vulnerability CVSS: 3.5 23 Dec 2018, 02:29 UTC

Tenda ADSL modem routers 1.0.1 allow XSS via the hostname of a DHCP client.

CVE-2018-16334 tendacn vulnerability CVSS: 9.0 02 Sep 2018, 03:29 UTC

An issue was discovered on Tenda AC9 V15.03.05.19(6318)_CN and AC10 V15.03.06.23_CN devices. The mac parameter in a POST request is used directly in a doSystemCmd call, causing OS command injection.

CVE-2018-16333 tendacn vulnerability CVSS: 7.8 02 Sep 2018, 03:29 UTC

An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05.19(6318)_CN devices. There is a buffer overflow vulnerability in the router's web server. While processing the ssid parameter for a POST request, the value is directly used in a sprintf call to a local variable placed on the stack, which overrides the return address of the function, causing a buffer overflow.

CVE-2018-14497 tendacn vulnerability CVSS: 3.5 04 Aug 2018, 01:29 UTC

Tenda D152 ADSL routers allow XSS via a crafted SSID.

CVE-2018-14492 tendacn vulnerability CVSS: 5.0 21 Jul 2018, 12:29 UTC

Tenda AC7 through V15.03.06.44_CN, AC9 through V15.03.05.19(6318)_CN, and AC10 through V15.03.06.23_CN devices have a Stack-based Buffer Overflow via a long limitSpeed or limitSpeedup parameter to an unspecified /goform URI.

CVE-2018-5768 tendacn vulnerability CVSS: 10.0 20 Mar 2018, 19:29 UTC

A remote, unauthenticated attacker can gain remote code execution on the the Tenda AC15 router with a specially crafted password parameter for the COOKIE header.

CVE-2018-5770 tendacn vulnerability CVSS: 10.0 20 Mar 2018, 15:29 UTC

An issue was discovered on Tenda AC15 devices. A remote, unauthenticated attacker can make a request to /goform/telnet, creating a telnetd service on the device. This service is password protected; however, several default accounts exist on the device that are root accounts, which can be used to log in.

CVE-2018-7561 tendacn vulnerability CVSS: 7.5 01 Mar 2018, 15:29 UTC

Stack-based Buffer Overflow in httpd on Tenda AC9 devices V15.03.05.14_EN allows remote attackers to cause a denial of service or possibly have unspecified other impact.

CVE-2018-5767 tendacn vulnerability CVSS: 7.5 15 Feb 2018, 23:29 UTC

An issue was discovered on Tenda AC15 V15.03.1.16_multi devices. A remote, unauthenticated attacker can gain remote code execution on the device with a crafted password parameter for the COOKIE header.

CVE-2017-9139 tendacn vulnerability CVSS: 2.7 21 May 2017, 22:29 UTC

There is a stack-based buffer overflow on some Tenda routers (FH1202/F1202/F1200: versions before 1.2.0.20). Crafted POST requests to an unspecified URL result in DoS, interrupting the HTTP service (used to login to the web UI of a router) for 1 to 2 seconds.

CVE-2017-9138 tendacn vulnerability CVSS: 7.7 21 May 2017, 22:29 UTC

There is a debug-interface vulnerability on some Tenda routers (FH1202/F1202/F1200: versions before 1.2.0.20). After connecting locally to a router in a wired or wireless manner, one can bypass intended access restrictions by sending shell commands directly and reading their results, or by entering shell commands that change this router's username and password.