cbcvebase.

Tenda Ac15 Firmware vulnerabilities

85 known vulnerabilities affecting tenda/ac15_firmware.

Total CVEs
85
CISA KEV
1
actively exploited
Public exploits
2
Exploited in wild
2
Severity breakdown
CRITICAL39HIGH37MEDIUM9

Vulnerabilities

Page 4 of 5
CVE-2024-32303P3HIGHCVSS 8.0v15.03.05.20_multiv15.03.05.19+1 more2024-04-17
CVE-2024-32303 [HIGH] CWE-121 CVE-2024-32303: Tenda AC15 v15.03.20_multi, v15.03.05.19, and v15.03.05.18 firmware has a stack overflow vulnerabili Tenda AC15 v15.03.20_multi, v15.03.05.19, and v15.03.05.18 firmware has a stack overflow vulnerability located via the PPW parameter in the fromWizardHandle function.
nvd
CVE-2022-28556P3HIGHCVSS 7.5v15.03.05.20_multi_tde012022-05-04
CVE-2022-28556 [HIGH] CVE-2022-28556: Tenda AC15 US_AC15V1.0BR_V15.03.05.20_multi_TDE01.bin is vulnerable to Buffer Overflow. The stack ov Tenda AC15 US_AC15V1.0BR_V15.03.05.20_multi_TDE01.bin is vulnerable to Buffer Overflow. The stack overflow vulnerability lies in the /goform/setpptpservercfg interface of the web. The sent post data startip and endip are copied to the stack using the sanf function, resulting in stack overflow. Similarly, this vulnerability can be used together with CVE-2021-4
nvd
CVE-2024-10280P3HIGHCVSS 7.5v15.03.05.18v15.03.05.192024-10-23
CVE-2024-10280 [HIGH] CWE-476 CVE-2024-10280: A vulnerability was found in Tenda AC6, AC7, AC8, AC9, AC10, AC10U, AC15, AC18, AC500 and AC1206 up A vulnerability was found in Tenda AC6, AC7, AC8, AC9, AC10, AC10U, AC15, AC18, AC500 and AC1206 up to 20241022. It has been rated as problematic. This issue affects the function websReadEvent of the file /goform/GetIPTV. The manipulation of the argument Content-Length leads to null pointer dereference. The attack may be initiated remotely. The exploit
nvd
CVE-2022-43259P3HIGHCVSS 7.5v15.03.05.18v15.03.05.192022-10-18
CVE-2022-43259 [HIGH] CWE-787 CVE-2022-43259: Tenda AC15 V15.03.05.18 was discovered to contain a stack overflow via the timeZone parameter in the Tenda AC15 V15.03.05.18 was discovered to contain a stack overflow via the timeZone parameter in the form_fast_setting_wifi_set function.
nvd
CVE-2025-25634P3MEDIUMCVSS 6.5v15.03.05.192025-03-05
CVE-2025-25634 [MEDIUM] CWE-121 CVE-2025-25634: A vulnerability has been found in Tenda AC15 15.03.05.19 in the function GetParentControlInfo of the A vulnerability has been found in Tenda AC15 15.03.05.19 in the function GetParentControlInfo of the file /goform/GetParentControlInfo. The manipulation of the argument src leads to stack-based buffer overflow.
nvd
CVE-2025-8979P3MEDIUMCVSS 6.6v15.13.07.132025-08-14
CVE-2025-8979 [MEDIUM] CWE-345 CVE-2025-8979: A vulnerability was identified in Tenda AC15 15.13.07.13. Affected by this vulnerability is the func A vulnerability was identified in Tenda AC15 15.13.07.13. Affected by this vulnerability is the function check_fw_type/split_fireware/check_fw of the component Firmware Update Handler. The manipulation leads to insufficient verification of data authenticity. The attack can be launched remotely. The complexity of an attack is rather high. The exploitat
nvd
CVE-2018-18708P3HIGHCVSS 7.5v15.03.05.19_cn2018-10-29
CVE-2018-18708 [HIGH] CWE-119 CVE-2018-18708: An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_C An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05.19(6318)_CN devices. It is a buffer overflow vulnerability in the router's web server -- httpd. When processing the "page" parameter of the function "fromAddressNat" for a post request, the value is directly u
nvd
CVE-2018-18730P3HIGHCVSS 7.5v15.03.05.19_cn2018-10-29
CVE-2018-18730 [HIGH] CWE-119 CVE-2018-18730: An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_C An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05.19(6318)_CN devices. There is a buffer overflow vulnerability in the router's web server -- httpd. While processing the 'startIp' and 'endIp' parameters for a post request, each value is directly used in a spr
nvd
CVE-2018-18706P3HIGHCVSS 7.5v15.03.05.19_cn2018-10-29
CVE-2018-18706 [HIGH] CWE-119 CVE-2018-18706: An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_C An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05.19(6318)_CN devices. It is a buffer overflow vulnerability in the router's web server -- httpd. When processing the "page" parameter of the function "fromDhcpListClient" for a request, it is directly used in a
nvd
CVE-2022-44156P3HIGHCVSS 7.5v15.03.05.192022-11-21
CVE-2022-44156 [HIGH] CWE-787 CVE-2022-44156: Tenda AC15 V15.03.05.19 is vulnerable to Buffer Overflow via function formSetIpMacBind. Tenda AC15 V15.03.05.19 is vulnerable to Buffer Overflow via function formSetIpMacBind.
nvd
CVE-2022-44167P3HIGHCVSS 7.5v15.03.05.182022-11-21
CVE-2022-44167 [HIGH] CWE-787 CVE-2022-44167: Tenda AC15 V15.03.05.18 is avulnerable to Buffer Overflow via function formSetPPTPServer. Tenda AC15 V15.03.05.18 is avulnerable to Buffer Overflow via function formSetPPTPServer.
nvd
CVE-2018-18707P3HIGHCVSS 7.5v15.03.05.19_cn2018-10-29
CVE-2018-18707 [HIGH] CWE-119 CVE-2018-18707: An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_C An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05.19(6318)_CN devices. It is a buffer overflow vulnerability in the router's web server -- httpd. When processing the "ssid" parameter for a post request, the value is directly used in a strcpy to a local variab
nvd
CVE-2018-18731P3HIGHCVSS 7.5v15.03.05.19_cn2018-10-29
CVE-2018-18731 [HIGH] CWE-119 CVE-2018-18731: An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_C An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05.19(6318)_CN devices. There is a buffer overflow vulnerability in the router's web server -- httpd. While processing the 'deviceMac' parameter for a post request, the value is directly used in a sprintf to a lo
nvd
CVE-2018-18709P3HIGHCVSS 7.5v15.03.05.19_cn2018-10-29
CVE-2018-18709 [HIGH] CWE-119 CVE-2018-18709: An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_C An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05.19(6318)_CN devices. It is a buffer overflow vulnerability in the router's web server -- httpd. When processing the "firewallEn" parameter for a post request, the value is directly used in a strcpy to a local
nvd
CVE-2018-18732P3HIGHCVSS 7.5v15.03.05.19_cn2018-10-29
CVE-2018-18732 [HIGH] CWE-119 CVE-2018-18732: An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_C An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05.19(6318)_CN devices. There is a buffer overflow vulnerability in the router's web server -- httpd. While processing the 'ntpServer' parameter for a post request, the value is directly used in a strcpy to a loc
nvd
CVE-2018-18727P3HIGHCVSS 7.5v15.03.05.19_cn2018-10-29
CVE-2018-18727 [HIGH] CWE-119 CVE-2018-18727: An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_C An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05.19(6318)_CN devices. There is a buffer overflow vulnerability in the router's web server -- httpd. While processing the 'deviceList' parameter for a post request, the value is directly used in a strcpy to a lo
nvd
CVE-2022-44168P3HIGHCVSS 7.5v15.03.05.182022-11-21
CVE-2022-44168 [HIGH] CWE-787 CVE-2022-44168: Tenda AC15 V15.03.05.18 is vulnerable to Buffer Overflow via function fromSetRouteStatic.. Tenda AC15 V15.03.05.18 is vulnerable to Buffer Overflow via function fromSetRouteStatic..
nvd
CVE-2022-44169P3HIGHCVSS 7.5v15.03.05.182022-11-21
CVE-2022-44169 [HIGH] CWE-787 CVE-2022-44169: Tenda AC15 V15.03.05.18 is vulnerable to Buffer Overflow via function formSetVirtualSer. Tenda AC15 V15.03.05.18 is vulnerable to Buffer Overflow via function formSetVirtualSer.
nvd
CVE-2017-16936P3MEDIUMCVSS 6.5vus_ac15v1.0br_v15.03.05.18_multi_td01vus_ac15v1.0br_v15.03.05.19_multi_td012017-11-24
CVE-2017-16936 [MEDIUM] CWE-22 CVE-2017-16936: Directory Traversal vulnerability in app_data_center on Shenzhen Tenda Ac9 US_AC9V1.0BR_V15.03.05.14 Directory Traversal vulnerability in app_data_center on Shenzhen Tenda Ac9 US_AC9V1.0BR_V15.03.05.14_multi_TD01, Ac9 ac9_kf_V15.03.05.19(6318_)_cn, Ac15 US_AC15V1.0BR_V15.03.05.18_multi_TD01, Ac15 US_AC15V1.0BR_V15.03.05.19_multi_TD01, Ac18 US_AC18V1.0BR_V15.03.05.05_multi_TD01, and Ac18 ac18_kf_V15.03.05.19(6318_)_cn devices allows remote unauthenti
nvd
CVE-2024-2816P4MEDIUMCVSS 6.5v15.03.05.182024-03-22
CVE-2024-2816 [MEDIUM] CWE-352 CVE-2024-2816: A vulnerability classified as problematic was found in Tenda AC15 15.03.05.18. Affected by this vuln A vulnerability classified as problematic was found in Tenda AC15 15.03.05.18. Affected by this vulnerability is the function fromSysToolReboot of the file /goform/SysToolReboot. The manipulation leads to cross-site request forgery. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identi
nvd
Tenda Ac15 Firmware vulnerabilities | cvebase