tenda
1,865 tracked vulnerabilities.
CVE-2025-25668
CRITICAL
Tenda AC8V4 V16.03.34.06 - Stack Overflow via shareSpeed Parameter
Feb 20, 2025
CVSS 9.8
EPSS 0.00
CVE-2025-25667
CRITICAL
Tenda AC8V4 V16.03.34.06 - Stack Overflow via urls Parameter in get_parentControl_list_Info
Feb 20, 2025
CVSS 9.8
EPSS 0.00
CVE-2025-25664
CRITICAL
Tenda AC8V4 V16.03.34.06 - Stack Overflow via shareSpeed Parameter
Feb 20, 2025
CVSS 9.8
EPSS 0.00
CVE-2025-25663
CRITICAL
Tenda AC8V4 V16.03.34.06 - Stack-based Buffer Overflow via WifiExtraSet wpapsk_crypto Argument
Feb 20, 2025
CVSS 9.8
EPSS 0.00
CVE-2025-25662
CRITICAL
Tenda O4 V3.0 V1.0.0.10(2936) - Buffer Overflow in SafeSetMacFilter via remark/type/time
Feb 20, 2025
CVSS 9.8
EPSS 0.00
CVE-2025-25343
CRITICAL
Tenda AC6 V15.03.05.16 - Buffer Overflow in formexeCommand
Feb 12, 2025
CVSS 9.8
EPSS 0.00
CVE-2025-0848
MEDIUM
Tenda A18 up to 15.13.07.09 - Stack-Based Buffer Overflow via wpapsk_crypto5g Parameter in SetCmdlineRun
Jan 30, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-0566
HIGH
Tenda AC15 15.13.07.13 - Buffer Overflow
Jan 19, 2025
CVSS 8.8
EPSS 0.10
CVE-2025-0528
HIGH
Tenda AC8,AC10,AC18 16.03.10.20 - Command Injection
Jan 17, 2025
CVSS 7.2
EPSS 0.01
CVE-2025-22949
CRITICAL
Tenda AC9 Firmware 15.03.05.19 - OS Command Injection via SetSambaCfg Endpoint
Jan 10, 2025
CVSS 9.8
EPSS 0.08
CVE-2025-22946
CRITICAL
Tenda AC9 Firmware v15.03.05.19 - Stack Overflow in SetOnlineDevName
Jan 10, 2025
CVSS 9.8
EPSS 0.02
CVE-2025-0349
HIGH
Tenda AC6 15.03.05.16 - Buffer Overflow
Jan 09, 2025
CVSS 8.8
EPSS 0.00
CVE-2024-46437
MEDIUM
Tenda W18E V16.01.0.8(1625) - Unauthenticated Sensitive Information Disclosure via getQuickCfgWifiAndLogin Function
Feb 10, 2025
CVSS 6.5
EPSS 0.00
CVE-2024-46436
HIGH
Tenda W18E V16.01.0.8(1625) - Unauthenticated Remote Root Access via Hardcoded Telnet Credentials
Feb 10, 2025
CVSS 8.3
EPSS 0.01
CVE-2024-46435
HIGH
Tenda W18E V16.01.0.8(1625) - Authenticated Stack-based Buffer Overflow in delFacebookPic Function
Feb 10, 2025
CVSS 8.0
EPSS 0.02
CVE-2024-46434
HIGH
Tenda W18E V16.01.0.8(1625) - Unauthenticated Authentication Bypass via Crafted HTTP Request
Feb 10, 2025
CVSS 8.8
EPSS 0.00
CVE-2024-46433
HIGH
Tenda W18E V16.01.0.8(1625) - Unauthenticated Default Credentials Use
Feb 10, 2025
CVSS 8.8
EPSS 0.01
CVE-2024-46432
HIGH
Tenda W18E V16.01.0.8(1625) - Unauthenticated Incorrect Access Control via setQuickCfgWifiAndLogin Function
Feb 10, 2025
CVSS 8.8
EPSS 0.00
CVE-2024-46431
HIGH
Tenda W18E V16.01.0.8(1625) - Buffer Overflow via delWewifiPic Function
Feb 10, 2025
CVSS 8.0
EPSS 0.00
CVE-2024-46430
MEDIUM
Tenda W18E V16.01.0.8(1625) - Unauthenticated Password Change via setLoginPassword Function
Feb 10, 2025
CVSS 6.5
EPSS 0.00
CVE-2024-46429
HIGH
Tenda W18E V16.01.0.8(1625) - Unauthenticated Hardcoded Credentials
Feb 10, 2025
CVSS 8.8
EPSS 0.00
CVE-2024-57704
HIGH
Tenda AC8v4 V16.03.34.06 - Stack-Based Buffer Overflow in setSchedWifi Function via schedStartTime Argument
Jan 16, 2025
CVSS 8.8
EPSS 0.00
CVE-2024-57703
CRITICAL
Tenda AC8v4 V16.03.34.06 - Stack-Based Buffer Overflow via setSchedWifi schedEndTime Argument
Jan 16, 2025
CVSS 9.8
EPSS 0.00
CVE-2024-46450
HIGH
Tenda AC6 v2.0 Firmware v15.03.06.50 - Missing Authorization
Jan 16, 2025
CVSS 8.1
EPSS 0.00
CVE-2024-57583
CRITICAL
Tenda AC18 V15.03.05.19 - OS Command Injection via usbName Parameter
Jan 16, 2025
CVSS 9.8
EPSS 0.02
Products
ac6_firmware 108
ac18_firmware 103
ac10_firmware 92
ac9_firmware 92
ac15_firmware 85
ac7_firmware 68
fh1202_firmware 63
w30e_firmware 63
ac8_firmware 62
ax1806_firmware 61
ax1803_firmware 60
ax3_firmware 53
m3_firmware 45
ac1206_firmware 44
ac5_firmware 40
ch22_firmware 39
fh1206_firmware 39
fh1203_firmware 35
f1203_firmware 34
ax12_firmware 31
w15e_firmware 31
f453_firmware 30
ac21_firmware 29
fh1205_firmware 29
F456 28
fh451_firmware 28
ac23_firmware 27
fh1201_firmware 25
f1202_firmware 24
g3_firmware 24
Quick Filters