Tenda Ac18 Firmware vulnerabilities
103 known vulnerabilities affecting tenda/ac18_firmware.
Total CVEs
103
CISA KEV
0
Public exploits
0
Exploited in wild
1
Severity breakdown
CRITICAL46HIGH49MEDIUM8
Vulnerabilities
Page 5 of 6
CVE-2025-60660P3HIGHCVSS 7.5v15.03.05.192025-10-02
CVE-2025-60660 [HIGH] CWE-787 CVE-2025-60660: Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the mac parameter in the from
Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the mac parameter in the fromAdvSetMacMtuWan function.
nvd
CVE-2025-60663P3HIGHCVSS 7.5v15.03.05.192025-10-02
CVE-2025-60663 [HIGH] CWE-787 CVE-2025-60663: Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the wanMTU parameter in the f
Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the wanMTU parameter in the fromAdvSetMacMtuWan function.
nvd
CVE-2024-28551P3HIGHCVSS 7.5v15.03.05.052024-03-26
CVE-2024-28551 [HIGH] CWE-121 CVE-2024-28551: Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the ssid parameter of form_fast_settin
Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the ssid parameter of form_fast_setting_wifi_set function.
nvd
CVE-2022-30473P3HIGHCVSS 7.5v15.03.05.19\(6318\)2022-05-26
CVE-2022-30473 [HIGH] CWE-787 CVE-2022-30473: Tenda AC Series Router AC18_V15.03.05.19(6318) has a stack-based buffer overflow vulnerability in fu
Tenda AC Series Router AC18_V15.03.05.19(6318) has a stack-based buffer overflow vulnerability in function form_fast_setting_wifi_set
nvd
CVE-2024-10280P3HIGHCVSS 7.5v15.03.05.05v15.03.05.19\(6318\)2024-10-23
CVE-2024-10280 [HIGH] CWE-476 CVE-2024-10280: A vulnerability was found in Tenda AC6, AC7, AC8, AC9, AC10, AC10U, AC15, AC18, AC500 and AC1206 up
A vulnerability was found in Tenda AC6, AC7, AC8, AC9, AC10, AC10U, AC15, AC18, AC500 and AC1206 up to 20241022. It has been rated as problematic. This issue affects the function websReadEvent of the file /goform/GetIPTV. The manipulation of the argument Content-Length leads to null pointer dereference. The attack may be initiated remotely. The exploit
nvd
CVE-2022-30475P3HIGHCVSS 7.5v15.03.05.19\(6318\)2022-05-26
CVE-2022-30475 [HIGH] CWE-787 CVE-2022-30475: Tenda AC Series Router AC18_V15.03.05.19(6318) was discovered to contain a stack-based buffer overfl
Tenda AC Series Router AC18_V15.03.05.19(6318) was discovered to contain a stack-based buffer overflow in the httpd module when handling /goform/WifiExtraSet request.
nvd
CVE-2022-40861P3HIGHCVSS 7.2v15.03.05.19\(6318\)2022-09-23
CVE-2022-40861 [HIGH] CWE-787 CVE-2022-40861: Tenda AC18 router V15.03.05.19 contains a stack overflow vulnerability in the formSetQosBand->FUN_00
Tenda AC18 router V15.03.05.19 contains a stack overflow vulnerability in the formSetQosBand->FUN_0007db78 function with the request /goform/SetNetControlList/
nvd
CVE-2018-18708P3HIGHCVSS 7.5v15.03.05.19\(6318\)_cn2018-10-29
CVE-2018-18708 [HIGH] CWE-119 CVE-2018-18708: An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_C
An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05.19(6318)_CN devices. It is a buffer overflow vulnerability in the router's web server -- httpd. When processing the "page" parameter of the function "fromAddressNat" for a post request, the value is directly u
nvd
CVE-2018-18730P3HIGHCVSS 7.5v15.03.05.19\(6318\)_cn2018-10-29
CVE-2018-18730 [HIGH] CWE-119 CVE-2018-18730: An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_C
An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05.19(6318)_CN devices. There is a buffer overflow vulnerability in the router's web server -- httpd. While processing the 'startIp' and 'endIp' parameters for a post request, each value is directly used in a spr
nvd
CVE-2018-18706P3HIGHCVSS 7.5v15.03.05.19\(6318\)_cn2018-10-29
CVE-2018-18706 [HIGH] CWE-119 CVE-2018-18706: An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_C
An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05.19(6318)_CN devices. It is a buffer overflow vulnerability in the router's web server -- httpd. When processing the "page" parameter of the function "fromDhcpListClient" for a request, it is directly used in a
nvd
CVE-2018-18707P3HIGHCVSS 7.5v15.03.05.19\(6318\)_cn2018-10-29
CVE-2018-18707 [HIGH] CWE-119 CVE-2018-18707: An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_C
An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05.19(6318)_CN devices. It is a buffer overflow vulnerability in the router's web server -- httpd. When processing the "ssid" parameter for a post request, the value is directly used in a strcpy to a local variab
nvd
CVE-2018-18731P3HIGHCVSS 7.5v15.03.05.19\(6318\)_cn2018-10-29
CVE-2018-18731 [HIGH] CWE-119 CVE-2018-18731: An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_C
An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05.19(6318)_CN devices. There is a buffer overflow vulnerability in the router's web server -- httpd. While processing the 'deviceMac' parameter for a post request, the value is directly used in a sprintf to a lo
nvd
CVE-2018-18709P3HIGHCVSS 7.5v15.03.05.19\(6318\)_cn2018-10-29
CVE-2018-18709 [HIGH] CWE-119 CVE-2018-18709: An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_C
An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05.19(6318)_CN devices. It is a buffer overflow vulnerability in the router's web server -- httpd. When processing the "firewallEn" parameter for a post request, the value is directly used in a strcpy to a local
nvd
CVE-2018-18732P3HIGHCVSS 7.5v15.03.05.19\(6318\)_cn2018-10-29
CVE-2018-18732 [HIGH] CWE-119 CVE-2018-18732: An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_C
An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05.19(6318)_CN devices. There is a buffer overflow vulnerability in the router's web server -- httpd. While processing the 'ntpServer' parameter for a post request, the value is directly used in a strcpy to a loc
nvd
CVE-2018-18727P3HIGHCVSS 7.5v15.03.05.19\(6318\)_cn2018-10-29
CVE-2018-18727 [HIGH] CWE-119 CVE-2018-18727: An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_C
An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05.19(6318)_CN devices. There is a buffer overflow vulnerability in the router's web server -- httpd. While processing the 'deviceList' parameter for a post request, the value is directly used in a strcpy to a lo
nvd
CVE-2017-16936P3MEDIUMCVSS 6.5vus_ac18v1.0br_v15.03.05.05_multi_td01vac18_kf_v15.03.05.19\(6318_\)_cn2017-11-24
CVE-2017-16936 [MEDIUM] CWE-22 CVE-2017-16936: Directory Traversal vulnerability in app_data_center on Shenzhen Tenda Ac9 US_AC9V1.0BR_V15.03.05.14
Directory Traversal vulnerability in app_data_center on Shenzhen Tenda Ac9 US_AC9V1.0BR_V15.03.05.14_multi_TD01, Ac9 ac9_kf_V15.03.05.19(6318_)_cn, Ac15 US_AC15V1.0BR_V15.03.05.18_multi_TD01, Ac15 US_AC15V1.0BR_V15.03.05.19_multi_TD01, Ac18 US_AC18V1.0BR_V15.03.05.05_multi_TD01, and Ac18 ac18_kf_V15.03.05.19(6318_)_cn devices allows remote unauthenti
nvd
CVE-2024-2559P3MEDIUMCVSS 6.5v15.03.05.052024-03-17
CVE-2024-2559 [MEDIUM] CWE-352 CVE-2024-2559: A vulnerability classified as problematic has been found in Tenda AC18 15.03.05.05. Affected is the
A vulnerability classified as problematic has been found in Tenda AC18 15.03.05.05. Affected is the function fromSysToolReboot of the file /goform/SysToolReboot. The manipulation leads to cross-site request forgery. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-257058 is the identifier a
nvd
CVE-2025-60661P4MEDIUMCVSS 5.3v15.03.05.192025-10-02
CVE-2025-60661 [MEDIUM] CWE-787 CVE-2025-60661: Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the cloneType parameter in th
Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the cloneType parameter in the fromAdvSetMacMtuWan function.
nvd
CVE-2024-28547P4MEDIUMCVSS 6.5v15.03.05.052024-03-18
CVE-2024-28547 [MEDIUM] CWE-121 CVE-2024-28547: Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the firewallEn parameter of formSetFir
Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the firewallEn parameter of formSetFirewallCfg function.
nvd
CVE-2024-57577P4MEDIUMCVSS 5.7v15.03.05.192025-01-16
CVE-2024-57577 [MEDIUM] CWE-787 CVE-2024-57577: Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the speed_dir parameter in th
Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the speed_dir parameter in the formSetSpeedWan function.
nvd