cbcvebase.

Tenda Ac18 Firmware vulnerabilities

103 known vulnerabilities affecting tenda/ac18_firmware.

Total CVEs
103
CISA KEV
0
Public exploits
0
Exploited in wild
1
Severity breakdown
CRITICAL46HIGH49MEDIUM8

Vulnerabilities

Page 2 of 6
CVE-2025-11120P2HIGHCVSS 8.8v16.03.34.062025-09-28
CVE-2025-11120 [HIGH] CWE-119 CVE-2025-11120: A weakness has been identified in Tenda AC8 16.03.34.06. The affected element is the function formSe A weakness has been identified in Tenda AC8 16.03.34.06. The affected element is the function formSetServerConfig of the file /goform/SetServerConfig. Executing manipulation can lead to buffer overflow. It is possible to launch the attack remotely. The exploit has been made available to the public and could be exploited.
nvd
CVE-2025-11325P2HIGHCVSS 8.8v15.03.05.19\(6318\)2025-10-06
CVE-2025-11325 [HIGH] CWE-119 CVE-2025-11325: A security flaw has been discovered in Tenda AC18 15.03.05.19(6318). Affected by this issue is some A security flaw has been discovered in Tenda AC18 15.03.05.19(6318). Affected by this issue is some unknown functionality of the file /goform/fast_setting_pppoe_set. Performing a manipulation of the argument Username results in stack-based buffer overflow. The attack is possible to be carried out remotely. The exploit has been released to the public an
nvd
CVE-2024-57583P2CRITICALCVSS 9.8v15.03.05.192025-01-16
CVE-2024-57583 [CRITICAL] CWE-77 CVE-2024-57583: Tenda AC18 V15.03.05.19 was discovered to contain a command injection vulnerability via the usbName Tenda AC18 V15.03.05.19 was discovered to contain a command injection vulnerability via the usbName parameter in the formSetSambaConf function.
nvd
CVE-2026-31255P2CRITICALCVSS 9.8v15.03.05.052026-04-27
CVE-2026-31255 [CRITICAL] CWE-77 CVE-2026-31255: A command injection vulnerability exists in Tenda AC18 V15.03.05.05_multi. The vulnerability is loca A command injection vulnerability exists in Tenda AC18 V15.03.05.05_multi. The vulnerability is located in the /goform/SetSambaCfg interface, where improper handling of the guestuser parameter allows attackers to execute arbitrary system commands.
nvd
CVE-2025-5607P2HIGHCVSS 8.8v15.03.05.052025-06-04
CVE-2025-5607 [HIGH] CWE-119 CVE-2025-5607: A vulnerability was found in Tenda AC18 15.03.05.05. It has been rated as critical. This issue affec A vulnerability was found in Tenda AC18 15.03.05.05. It has been rated as critical. This issue affects the function formSetPPTPUserList of the file /goform/setPptpUserList. The manipulation of the argument list leads to buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
nvd
CVE-2025-11123P2HIGHCVSS 8.8v15.03.05.192025-09-28
CVE-2025-11123 [HIGH] CWE-119 CVE-2025-11123: A flaw has been found in Tenda AC18 15.03.05.19. This impacts an unknown function of the file /gofor A flaw has been found in Tenda AC18 15.03.05.19. This impacts an unknown function of the file /goform/saveAutoQos. This manipulation of the argument enable causes stack-based buffer overflow. The attack may be initiated remotely. The exploit has been published and may be used.
nvd
CVE-2024-28545P2CRITICALCVSS 9.8v15.03.05.052024-03-26
CVE-2024-28545 [CRITICAL] CWE-77 CVE-2024-28545: Tenda AC18 V15.03.05.05 contains a command injection vulnerablility in the deviceName parameter of f Tenda AC18 V15.03.05.05 contains a command injection vulnerablility in the deviceName parameter of formsetUsbUnload function.
nvd
CVE-2024-57575P2CRITICALCVSS 9.8v15.03.05.192025-01-16
CVE-2024-57575 [CRITICAL] CWE-787 CVE-2024-57575: Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the ssid parameter in the for Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the ssid parameter in the form_fast_setting_wifi_set function.
nvd
CVE-2024-57580P2CRITICALCVSS 9.8v15.03.05.192025-01-16
CVE-2024-57580 [CRITICAL] CWE-787 CVE-2024-57580: Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the devName parameter in the Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the devName parameter in the formSetDeviceName function.
nvd
CVE-2024-2546P2HIGHCVSS 8.8v15.13.07.092024-03-17
CVE-2024-2546 [HIGH] CWE-121 CVE-2024-2546: A vulnerability has been found in Tenda AC18 15.13.07.09 and classified as critical. Affected by thi A vulnerability has been found in Tenda AC18 15.13.07.09 and classified as critical. Affected by this vulnerability is the function fromSetWirelessRepeat. The manipulation of the argument wpapsk_crypto5g leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated
nvd
CVE-2025-5609P2HIGHCVSS 8.8v15.03.05.052025-06-04
CVE-2025-5609 [HIGH] CWE-119 CVE-2025-5609: A vulnerability classified as critical was found in Tenda AC18 15.03.05.05. Affected by this vulnera A vulnerability classified as critical was found in Tenda AC18 15.03.05.05. Affected by this vulnerability is the function fromadvsetlanip of the file /goform/AdvSetLanip. The manipulation of the argument lanMask leads to buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
nvd
CVE-2024-33835P2CRITICALCVSS 9.8v15.03.05.052024-05-01
CVE-2024-33835 [CRITICAL] CWE-787 CVE-2024-33835: Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the remoteIp parameter from formSetSaf Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the remoteIp parameter from formSetSafeWanWebMan function.
nvd
CVE-2024-28553P2CRITICALCVSS 9.8v15.03.05.052024-03-12
CVE-2024-28553 [CRITICAL] CWE-787 CVE-2024-28553: Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the entrys parameter fromAddressNat fu Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the entrys parameter fromAddressNat function.
nvd
CVE-2024-28535P2CRITICALCVSS 9.8v15.03.05.052024-03-12
CVE-2024-28535 [CRITICAL] CWE-787 CVE-2024-28535: Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the mitInterface parameter of fromAddr Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the mitInterface parameter of fromAddressNat function.
nvd
CVE-2024-57581P2CRITICALCVSS 9.8v15.03.05.192025-01-16
CVE-2024-57581 [CRITICAL] CWE-787 CVE-2024-57581: Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the firewallEn parameter in t Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the firewallEn parameter in the formSetFirewallCfg function.
nvd
CVE-2024-57582P2CRITICALCVSS 9.8v15.03.05.192025-01-16
CVE-2024-57582 [CRITICAL] CWE-787 CVE-2024-57582: Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the startIP parameter in the Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the startIP parameter in the formSetPPTPServer function.
nvd
CVE-2024-57579P2CRITICALCVSS 9.8v15.03.05.192025-01-16
CVE-2024-57579 [CRITICAL] CWE-787 CVE-2024-57579: Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the limitSpeedUp parameter in Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the limitSpeedUp parameter in the formSetClientState function.
nvd
CVE-2025-9023P2HIGHCVSS 8.8v15.03.05.192025-08-15
CVE-2025-9023 [HIGH] CWE-119 CVE-2025-9023: A vulnerability has been found in Tenda AC7 and AC18 15.03.05.19/15.03.06.44. Affected is the functi A vulnerability has been found in Tenda AC7 and AC18 15.03.05.19/15.03.06.44. Affected is the function formSetSchedLed of the file /goform/SetLEDCfg. The manipulation of the argument Time leads to buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
nvd
CVE-2025-63835P2HIGHCVSS 8.8v15.03.05.052025-11-10
CVE-2025-63835 [HIGH] CWE-787 CVE-2025-63835: A stack-based buffer overflow vulnerability was discovered in Tenda AC18 v15.03.05.05_multi. The vul A stack-based buffer overflow vulnerability was discovered in Tenda AC18 v15.03.05.05_multi. The vulnerability exists in the guestSsid parameter of the /goform/WifiGuestSet interface. Remote attackers can exploit this vulnerability by sending oversized data to the guestSsid parameter, leading to denial of service (device crash) or potential remote cod
nvd
CVE-2024-28537P2CRITICALCVSS 9.8v15.03.05.052024-03-18
CVE-2024-28537 [CRITICAL] CWE-125 CVE-2024-28537: Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the page parameter of fromNatStaticSet Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the page parameter of fromNatStaticSetting function.
nvd
Tenda Ac18 Firmware vulnerabilities | cvebase