← Back

Tenda

tenda

1,840 CVEs • 218 products

Products (218)

Click to collapse
Toggle
Ac6 Firmware
ac6_firmware
Ac9 Firmware
ac9_firmware
Ac10 Firmware
ac10_firmware
Ac15 Firmware
ac15_firmware
Ac7 Firmware
ac7_firmware
W30e Firmware
w30e_firmware
Ac8 Firmware
ac8_firmware
Ax3 Firmware
ax3_firmware
M3 Firmware
m3_firmware
Ac5 Firmware
ac5_firmware
Ch22 Firmware
ch22_firmware
W15e Firmware
w15e_firmware
Ax12 Firmware
ax12_firmware
F453 Firmware
f453_firmware
Ac21 Firmware
ac21_firmware
Ac23 Firmware
ac23_firmware
G3 Firmware
g3_firmware
W20e Firmware
w20e_firmware
A15 Firmware
a15_firmware
F456 Firmware
f456_firmware
Ac20 Firmware
ac20_firmware
I21 Firmware
i21_firmware
W9 Firmware
w9_firmware
I22 Firmware
i22_firmware
Rx3 Firmware
rx3_firmware
O3 Firmware
o3_firmware
F451 Firmware
f451_firmware
W18e Firmware
w18e_firmware
Tx3 Firmware
tx3_firmware
I9 Firmware
i9_firmware
A18 Firmware
a18_firmware
Ax9 Firmware
ax9_firmware
F3 Firmware
f3_firmware
W6 S Firmware
w6-s_firmware
I29 Firmware
i29_firmware
Ac11 Firmware
ac11_firmware
I12 Firmware
i12_firmware
W6 Firmware
w6_firmware
W12 Firmware
w12_firmware
I3 Firmware
i3_firmware
Hg9 Firmware
hg9_firmware
Cp3 Firmware
cp3_firmware
I6 Firmware
i6_firmware
W3 Firmware
w3_firmware
I24 Firmware
i24_firmware
A21 Firmware
a21_firmware
G1 Firmware
g1_firmware
G103 Firmware
g103_firmware
Tx9 Firmware
tx9_firmware
O6 Firmware
o6_firmware
Hg10 Firmware
hg10_firmware
Hg3 Firmware
hg3_firmware
N301 Firmware
n301_firmware
N300 Firmware
n300_firmware
O1 Firmware
o1_firmware
A5s Firmware
a5s_firmware
A5s
a5s
A32 Firmware
a32_firmware
A32
a32
Hg6 Firmware
hg6_firmware
11n Firmware
11n_firmware
Ac23
ac23
Cp7 Firmware
cp7_firmware
Ac19 Firmware
ac19_firmware
A301 Firmware
a301_firmware
O5 Firmware
o5_firmware

CVEs (1,840)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Tenda
1Cp3 Firmware
Apr 29, 2026
Jun 6, 2025
2.0 LOW· v4
8.8 HIGH· v3
5.8 MEDIUM· v2
A vulnerability has been found in Tenda CP3 11.10.00.2311090948 and classified as critical. Affected by this vulnerability is the function sub_F3C8C of the file apollo. The manipulation leads to command injection. The at...Show more
A vulnerability has been found in Tenda CP3 11.10.00.2311090948 and classified as critical. Affected by this vulnerability is the function sub_F3C8C of the file apollo. The manipulation leads to command injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.Show less
1Tenda
1Ch22 Firmware
Jun 10, 2025
Jun 5, 2025
8.7 HIGH· v4
9.8 CRITICAL· v3
9.0 HIGH· v2
A vulnerability, which was classified as critical, was found in Tenda CH22 1.0.0.1. This affects the function formNatlimit of the file /goform/Natlimit. The manipulation of the argument page leads to stack-based buffer o...Show more
A vulnerability, which was classified as critical, was found in Tenda CH22 1.0.0.1. This affects the function formNatlimit of the file /goform/Natlimit. The manipulation of the argument page leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.Show less
1Tenda
1Ac10 Firmware
Jun 6, 2025
Jun 5, 2025
8.7 HIGH· v4
9.8 CRITICAL· v3
9.0 HIGH· v2
A vulnerability, which was classified as critical, was found in Tenda AC10 up to 15.03.06.47. This affects the function formSetPPTPServer of the file /goform/SetPptpServerCfg of the component HTTP Handler. The manipulati...Show more
A vulnerability, which was classified as critical, was found in Tenda AC10 up to 15.03.06.47. This affects the function formSetPPTPServer of the file /goform/SetPptpServerCfg of the component HTTP Handler. The manipulation of the argument startIp/endIp leads to buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.Show less
1Tenda
1Ch22 Firmware
Jun 6, 2025
Jun 4, 2025
8.7 HIGH· v4
9.8 CRITICAL· v3
9.0 HIGH· v2
A vulnerability, which was classified as critical, has been found in Tenda CH22 1.0.0.1. This issue affects the function formaddUserName of the file /goform/addUserName. The manipulation of the argument Password leads to...Show more
A vulnerability, which was classified as critical, has been found in Tenda CH22 1.0.0.1. This issue affects the function formaddUserName of the file /goform/addUserName. The manipulation of the argument Password leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.Show less
1Tenda
1Ac18 Firmware
Jun 17, 2025
Jun 4, 2025
8.7 HIGH· v4
8.8 HIGH· v3
9.0 HIGH· v2
A vulnerability classified as critical was found in Tenda AC18 15.03.05.05. Affected by this vulnerability is the function fromadvsetlanip of the file /goform/AdvSetLanip. The manipulation of the argument lanMask leads t...Show more
A vulnerability classified as critical was found in Tenda AC18 15.03.05.05. Affected by this vulnerability is the function fromadvsetlanip of the file /goform/AdvSetLanip. The manipulation of the argument lanMask leads to buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.Show less
1Tenda
1Ac18 Firmware
Jun 17, 2025
Jun 4, 2025
8.7 HIGH· v4
8.8 HIGH· v3
9.0 HIGH· v2
A vulnerability classified as critical has been found in Tenda AC18 15.03.05.05. Affected is the function formsetreboottimer of the file /goform/SetSysAutoRebbotCfg. The manipulation of the argument rebootTime leads to b...Show more
A vulnerability classified as critical has been found in Tenda AC18 15.03.05.05. Affected is the function formsetreboottimer of the file /goform/SetSysAutoRebbotCfg. The manipulation of the argument rebootTime leads to buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.Show less
1Tenda
1Ac18 Firmware
Jun 17, 2025
Jun 4, 2025
8.7 HIGH· v4
8.8 HIGH· v3
9.0 HIGH· v2
A vulnerability was found in Tenda AC18 15.03.05.05. It has been rated as critical. This issue affects the function formSetPPTPUserList of the file /goform/setPptpUserList. The manipulation of the argument list leads to...Show more
A vulnerability was found in Tenda AC18 15.03.05.05. It has been rated as critical. This issue affects the function formSetPPTPUserList of the file /goform/setPptpUserList. The manipulation of the argument list leads to buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.Show less
1Tenda
1Ac18 Firmware
Jun 10, 2025
Jun 4, 2025
5.3 MEDIUM· v4
9.8 CRITICAL· v3
6.5 MEDIUM· v2
A vulnerability was found in Tenda AC18 15.03.05.05. It has been declared as critical. This vulnerability affects the function formSetIptv of the file /goform/SetIPTVCfg. The manipulation of the argument list leads to co...Show more
A vulnerability was found in Tenda AC18 15.03.05.05. It has been declared as critical. This vulnerability affects the function formSetIptv of the file /goform/SetIPTVCfg. The manipulation of the argument list leads to command injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.Show less
1Tenda
1Rx3 Firmware
Jun 9, 2025
Jun 3, 2025
8.7 HIGH· v4
8.8 HIGH· v3
9.0 HIGH· v2
A vulnerability was found in Tenda RX3 16.03.13.11_multi_TDE01. It has been rated as critical. This issue affects the function save_staticroute_data of the file /goform/SetStaticRouteCfg. The manipulation of the argument...Show more
A vulnerability was found in Tenda RX3 16.03.13.11_multi_TDE01. It has been rated as critical. This issue affects the function save_staticroute_data of the file /goform/SetStaticRouteCfg. The manipulation of the argument list leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.Show less
1Tenda
1Ac6 Firmware
Jun 3, 2025
Jun 2, 2025
N/A· v4
6.5 MEDIUM· v3
N/A· v2
Tenda AC6 V15.03.05.16 was discovered to contain a stack overflow via the time parameter in the setSmartPowerManagement function.
1Tenda
1W18e Firmware
Jun 3, 2025
May 28, 2025
N/A· v4
9.8 CRITICAL· v3
N/A· v2
An issue in Tenda W18E v.2.0 v.16.01.0.11 allows an attacker to execute arbitrary code via the editing functionality of the account module in the goform/setmodules route.
1Tenda
1Fh451 Firmware
Jun 20, 2025
May 22, 2025
8.7 HIGH· v4
8.8 HIGH· v3
9.0 HIGH· v2
A vulnerability classified as critical has been found in Tenda FH451 1.0.0.9. Affected is the function webExcptypemanFilter of the file /goform/webExcptypemanFilter. The manipulation of the argument page leads to stack-b...Show more
A vulnerability classified as critical has been found in Tenda FH451 1.0.0.9. Affected is the function webExcptypemanFilter of the file /goform/webExcptypemanFilter. The manipulation of the argument page leads to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.Show less
1Tenda
1A15 Firmware
May 27, 2025
May 18, 2025
8.7 HIGH· v4
7.5 HIGH· v3
9.0 HIGH· v2
A vulnerability was found in Tenda A15 15.13.07.09/15.13.07.13. It has been classified as critical. This affects an unknown part of the file /goform/multimodalAdd of the component HTTP POST Request Handler. The manipulat...Show more
A vulnerability was found in Tenda A15 15.13.07.09/15.13.07.13. It has been classified as critical. This affects an unknown part of the file /goform/multimodalAdd of the component HTTP POST Request Handler. The manipulation leads to buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.Show less
1Tenda
1Ac10 Firmware
May 27, 2025
May 18, 2025
8.7 HIGH· v4
7.5 HIGH· v3
9.0 HIGH· v2
A vulnerability was found in Tenda AC10 16.03.10.13 and classified as critical. Affected by this issue is some unknown functionality of the file /goform/UserCongratulationsExec. The manipulation of the argument getuid le...Show more
A vulnerability was found in Tenda AC10 16.03.10.13 and classified as critical. Affected by this issue is some unknown functionality of the file /goform/UserCongratulationsExec. The manipulation of the argument getuid leads to buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.Show less
1Tenda
1A15 Firmware
Jun 24, 2025
May 18, 2025
7.1 HIGH· v4
6.5 MEDIUM· v3
6.8 MEDIUM· v2
A vulnerability was found in Tenda A15 15.13.07.13. It has been declared as problematic. Affected by this vulnerability is the function formArpNerworkSet of the file /goform/ArpNerworkSet. The manipulation leads to denia...Show more
A vulnerability was found in Tenda A15 15.13.07.13. It has been declared as problematic. Affected by this vulnerability is the function formArpNerworkSet of the file /goform/ArpNerworkSet. The manipulation leads to denial of service. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.Show less
1Tenda
1Ac7 Firmware
May 24, 2025
May 16, 2025
8.7 HIGH· v4
8.8 HIGH· v3
9.0 HIGH· v2
A vulnerability was found in Tenda AC7 15.03.06.44. It has been declared as critical. Affected by this vulnerability is the function formSetRebootTimer of the file /goform/SetRebootTimer. The manipulation of the argument...Show more
A vulnerability was found in Tenda AC7 15.03.06.44. It has been declared as critical. Affected by this vulnerability is the function formSetRebootTimer of the file /goform/SetRebootTimer. The manipulation of the argument reboot_time leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.Show less
1Tenda
1Ac7 Firmware
May 24, 2025
May 16, 2025
8.7 HIGH· v4
8.8 HIGH· v3
9.0 HIGH· v2
A vulnerability was found in Tenda AC7 15.03.06.44. It has been classified as critical. Affected is the function fromSafeSetMacFilter of the file /goform/setMacFilterCfg. The manipulation of the argument deviceList leads...Show more
A vulnerability was found in Tenda AC7 15.03.06.44. It has been classified as critical. Affected is the function fromSafeSetMacFilter of the file /goform/setMacFilterCfg. The manipulation of the argument deviceList leads to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.Show less
1Tenda
1Fh451 Firmware
May 23, 2025
May 12, 2025
N/A· v4
6.5 MEDIUM· v3
N/A· v2
Tenda FH451 V1.0.0.9 is vulnerable to Remote Code Execution in the formSafeEmailFilter function.
1Tenda
1Ac10 Firmware
Jun 13, 2025
May 12, 2025
N/A· v4
5.4 MEDIUM· v3
N/A· v2
Tenda AC10 v4 V16.03.10.13 is vulnerable to Buffer Overflow in the GetParentControlInfo function.
1Tenda
1Ac10 Firmware
Jun 13, 2025
May 12, 2025
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Tenda AC10 V1.0re_V15.03.06.46 is vulnerable to Buffer Overflow in the formSetPPTPUserList handler via the list POST parameter.