Tenda Ac18 Firmware vulnerabilities
103 known vulnerabilities affecting tenda/ac18_firmware.
Total CVEs
103
CISA KEV
0
Public exploits
0
Exploited in wild
1
Severity breakdown
CRITICAL46HIGH49MEDIUM8
Vulnerabilities
Page 6 of 6
CVE-2025-63834P4MEDIUMCVSS 5.4v15.03.05.052025-11-10
CVE-2025-63834 [MEDIUM] CWE-79 CVE-2025-63834: A stored cross-site scripting (XSS) vulnerability was discovered in Tenda AC18 v15.03.05.05_multi. T
A stored cross-site scripting (XSS) vulnerability was discovered in Tenda AC18 v15.03.05.05_multi. The vulnerability exists in the ssid parameter of the wireless settings. Remote attackers can inject malicious payloads that execute when any user visits the router's homepage.
nvd
CVE-2024-28550P4MEDIUMCVSS 4.3v15.03.05.052024-03-18
CVE-2024-28550 [MEDIUM] CWE-121 CVE-2024-28550: Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the filePath parameter of formExpandDl
Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the filePath parameter of formExpandDlnaFile function.
nvd
CVE-2024-2560P4MEDIUMCVSS 4.3v15.03.05.052024-03-17
CVE-2024-2560 [MEDIUM] CWE-352 CVE-2024-2560: A vulnerability classified as problematic was found in Tenda AC18 15.03.05.05. Affected by this vuln
A vulnerability classified as problematic was found in Tenda AC18 15.03.05.05. Affected by this vulnerability is the function fromSysToolRestoreSet of the file /goform/SysToolRestoreSet. The manipulation leads to cross-site request forgery. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associate
nvd
← Previous6 / 6