Tenda Ac10 Firmware vulnerabilities
92 known vulnerabilities affecting tenda/ac10_firmware.
Total CVEs
92
CISA KEV
1
actively exploited
Public exploits
0
Exploited in wild
1
Severity breakdown
CRITICAL47HIGH31MEDIUM14
Vulnerabilities
Page 1 of 5
CVE-2018-14558P1CRITICALCVSS 9.8KEV≤ 15.03.06.23_cn2018-10-30
CVE-2018-14558 [CRITICAL] CWE-78 CVE-2018-14558: An issue was discovered on Tenda AC7 devices with firmware through V15.03.06.44_CN(AC7), AC9 devices
An issue was discovered on Tenda AC7 devices with firmware through V15.03.06.44_CN(AC7), AC9 devices with firmware through V15.03.05.19(6318)_CN(AC9), and AC10 devices with firmware through V15.03.06.23_CN(AC10). A command Injection vulnerability allows attackers to execute arbitrary OS commands via a crafted goform/setUsbUnload request. This occur
nvd
CVE-2022-32054P2CRITICALCVSS 9.8v15.03.06.262022-07-07
CVE-2022-32054 [CRITICAL] CWE-78 CVE-2022-32054: Tenda AC10 US_AC10V1.0RTL_V15.03.06.26_multi_TD01 was discovered to contain a remote code execution
Tenda AC10 US_AC10V1.0RTL_V15.03.06.26_multi_TD01 was discovered to contain a remote code execution (RCE) vulnerability via the lanIp parameter.
nvd
CVE-2024-2856P2CRITICALCVSS 9.8v16.03.10.13v16.03.10.202024-03-24
CVE-2024-2856 [CRITICAL] CWE-121 CVE-2024-2856: A vulnerability, which was classified as critical, has been found in Tenda AC10 16.03.10.13/16.03.10
A vulnerability, which was classified as critical, has been found in Tenda AC10 16.03.10.13/16.03.10.20. Affected by this issue is the function fromSetSysTime of the file /goform/SetSysTimeCfg. The manipulation of the argument timeZone leads to stack-based buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the pu
nvd
CVE-2025-12622P2CRITICALCVSS 9.8v16.03.10.132025-11-03
CVE-2025-12622 [CRITICAL] CWE-119 CVE-2025-12622: A vulnerability was determined in Tenda AC10 16.03.10.13. Affected by this vulnerability is the func
A vulnerability was determined in Tenda AC10 16.03.10.13. Affected by this vulnerability is the function formSysRunCmd of the file /goform/SysRunCmd. This manipulation of the argument getui causes buffer overflow. The attack may be initiated remotely. The exploit has been publicly disclosed and may be utilized.
nvd
CVE-2026-5547P2HIGHCVSS 8.8v16.03.10.10_multi_tde012026-04-05
CVE-2026-5547 [HIGH] CWE-77 CVE-2026-5547: A vulnerability has been found in Tenda AC10 16.03.10.10_multi_TDE01. Affected is the function formA
A vulnerability has been found in Tenda AC10 16.03.10.10_multi_TDE01. Affected is the function formAddMacfilterRule of the file /bin/httpd. Such manipulation leads to os command injection. It is possible to launch the attack remotely. Multiple endpoints might be affected.
nvd
CVE-2024-11061P2HIGHCVSS 8.8v16.03.10.132024-11-11
CVE-2024-11061 [HIGH] CWE-119 CVE-2024-11061: A vulnerability classified as critical was found in Tenda AC10 16.03.10.13. Affected by this vulnera
A vulnerability classified as critical was found in Tenda AC10 16.03.10.13. Affected by this vulnerability is the function FUN_0044db3c of the file /goform/fast_setting_wifi_set. The manipulation of the argument timeZone leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be u
nvd
CVE-2025-3161P2HIGHCVSS 8.8v16.03.10.132025-04-03
CVE-2025-3161 [HIGH] CWE-119 CVE-2025-3161: A vulnerability was found in Tenda AC10 16.03.10.13 and classified as critical. This issue affects t
A vulnerability was found in Tenda AC10 16.03.10.13 and classified as critical. This issue affects the function ShutdownSetAdd of the file /goform/ShutdownSetAdd. The manipulation of the argument list leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
nvd
CVE-2026-5548P2HIGHCVSS 8.8v16.03.10.10_multi_tde012026-04-05
CVE-2026-5548 [HIGH] CWE-119 CVE-2026-5548: A vulnerability was found in Tenda AC10 16.03.10.10_multi_TDE01. Affected by this vulnerability is t
A vulnerability was found in Tenda AC10 16.03.10.10_multi_TDE01. Affected by this vulnerability is the function fromSysToolChangePwd of the file /bin/httpd. Performing a manipulation of the argument sys.userpass results in stack-based buffer overflow. The attack can be initiated remotely.
nvd
CVE-2025-45779P2CRITICALCVSS 9.8v15.03.06.462025-05-12
CVE-2025-45779 [CRITICAL] CWE-120 CVE-2025-45779: Tenda AC10 V1.0re_V15.03.06.46 is vulnerable to Buffer Overflow in the formSetPPTPUserList handler v
Tenda AC10 V1.0re_V15.03.06.46 is vulnerable to Buffer Overflow in the formSetPPTPUserList handler via the list POST parameter.
nvd
CVE-2024-2581P2HIGHCVSS 8.8v16.03.10.132024-03-18
CVE-2024-2581 [HIGH] CWE-121 CVE-2024-2581: A vulnerability was found in Tenda AC10 16.03.10.13 and classified as critical. This issue affects t
A vulnerability was found in Tenda AC10 16.03.10.13 and classified as critical. This issue affects the function fromSetRouteStatic of the file /goform/SetStaticRouteCfg. The manipulation of the argument list leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The ident
nvd
CVE-2024-11248P2HIGHCVSS 8.8v16.03.10.132024-11-15
CVE-2024-11248 [HIGH] CWE-119 CVE-2024-11248: A vulnerability was found in Tenda AC10 16.03.10.13 and classified as critical. Affected by this iss
A vulnerability was found in Tenda AC10 16.03.10.13 and classified as critical. Affected by this issue is the function formSetRebootTimer of the file /goform/SetSysAutoRebbotCfg. The manipulation of the argument rebootTime leads to stack-based buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be
nvd
CVE-2024-11056P2HIGHCVSS 8.8v16.03.10.132024-11-10
CVE-2024-11056 [HIGH] CWE-119 CVE-2024-11056: A vulnerability, which was classified as critical, was found in Tenda AC10 16.03.10.13. Affected is
A vulnerability, which was classified as critical, was found in Tenda AC10 16.03.10.13. Affected is the function FUN_0046AC38 of the file /goform/WifiExtraSet. The manipulation of the argument wpapsk_crypto leads to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
nvd
CVE-2026-5550P2HIGHCVSS 8.8v16.03.10.10_multi_tde012026-04-05
CVE-2026-5550 [HIGH] CWE-119 CVE-2026-5550: A vulnerability was identified in Tenda AC10 16.03.10.10_multi_TDE01. This affects the function from
A vulnerability was identified in Tenda AC10 16.03.10.10_multi_TDE01. This affects the function fromSysToolChangePwd of the file /bin/httpd. The manipulation leads to stack-based buffer overflow. The attack may be initiated remotely. Multiple endpoints might be affected.
nvd
CVE-2025-25675P2CRITICALCVSS 9.8v15.03.06.232025-02-20
CVE-2025-25675 [CRITICAL] CWE-77 CVE-2025-25675: Tenda AC10 V1.0 V15.03.06.23 has a command injection vulnerablility located in the formexeCommand fu
Tenda AC10 V1.0 V15.03.06.23 has a command injection vulnerablility located in the formexeCommand function. The str variable receives the cmdinput parameter from a POST request and is later assigned to the cmd_buf variable, which is directly used in the doSystemCmd function, causing an arbitrary command execution.
nvd
CVE-2025-5629P2CRITICALCVSS 9.8≤ 15.03.06.472025-06-05
CVE-2025-5629 [CRITICAL] CWE-119 CVE-2025-5629: A vulnerability, which was classified as critical, was found in Tenda AC10 up to 15.03.06.47. This a
A vulnerability, which was classified as critical, was found in Tenda AC10 up to 15.03.06.47. This affects the function formSetPPTPServer of the file /goform/SetPptpServerCfg of the component HTTP Handler. The manipulation of the argument startIp/endIp leads to buffer overflow. It is possible to initiate the attack remotely. The exploit has been dis
nvd
CVE-2025-8178P2HIGHCVSS 8.8v16.03.10.132025-07-26
CVE-2025-8178 [HIGH] CWE-119 CVE-2025-8178: A vulnerability classified as critical has been found in Tenda AC10 16.03.10.13. Affected is an unkn
A vulnerability classified as critical has been found in Tenda AC10 16.03.10.13. Affected is an unknown function of the file /goform/RequestsProcessLaid. The manipulation of the argument device1D leads to heap-based buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
nvd
CVE-2023-37711P2CRITICALCVSS 9.8v15.03.06.472023-07-10
CVE-2023-37711 [CRITICAL] CWE-787 CVE-2023-37711: Tenda AC1206 V15.03.06.23 and AC10 V15.03.06.47 were discovered to contain a stack overflow in the d
Tenda AC1206 V15.03.06.23 and AC10 V15.03.06.47 were discovered to contain a stack overflow in the deviceId parameter in the saveParentControlInfo function.
nvd
CVE-2023-37710P2CRITICALCVSS 9.8v15.03.06.472023-07-10
CVE-2023-37710 [CRITICAL] CWE-787 CVE-2023-37710: Tenda AC1206 V15.03.06.23 and AC10 V15.03.06.47 were discovered to contain a stack overflow in the w
Tenda AC1206 V15.03.06.23 and AC10 V15.03.06.47 were discovered to contain a stack overflow in the wpapsk_crypto parameter in the fromSetWirelessRepeat function.
nvd
CVE-2025-25674P3CRITICALCVSS 9.8v15.03.06.232025-02-20
CVE-2025-25674 [CRITICAL] CWE-120 CVE-2025-25674: Tenda AC10 V1.0 V15.03.06.23 is vulnerable to Buffer Overflow in form_fast_setting_wifi_set via the
Tenda AC10 V1.0 V15.03.06.23 is vulnerable to Buffer Overflow in form_fast_setting_wifi_set via the parameter ssid.
nvd
CVE-2025-0528P3HIGHCVSS 7.2v16.03.10.202025-01-17
CVE-2025-0528 [HIGH] CWE-74 CVE-2025-0528: A vulnerability, which was classified as critical, has been found in Tenda AC8, AC10 and AC18 16.03.
A vulnerability, which was classified as critical, has been found in Tenda AC8, AC10 and AC18 16.03.10.20. Affected by this issue is some unknown functionality of the file /goform/telnet of the component HTTP Request Handler. The manipulation leads to command injection. The attack may be launched remotely. The exploit has been disclosed to the public and
nvd
1 / 5Next →