cbcvebase.

Tenda Ac9 Firmware vulnerabilities

92 known vulnerabilities affecting tenda/ac9_firmware.

Total CVEs
92
CISA KEV
1
actively exploited
Public exploits
0
Exploited in wild
1
Severity breakdown
CRITICAL55HIGH33MEDIUM4

Vulnerabilities

Page 3 of 5
CVE-2025-45427P2CRITICALCVSS 9.8v15.03.05.14_multi2025-04-23
CVE-2025-45427 [CRITICAL] CWE-121 CVE-2025-45427: In Tenda AC9 v1.0 with firmware V15.03.05.14_multi, the security parameter of /goform/WifiBasicSet h In Tenda AC9 v1.0 with firmware V15.03.05.14_multi, the security parameter of /goform/WifiBasicSet has a stack overflow vulnerability, which can lead to remote arbitrary code execution.
nvd
CVE-2023-41562P2CRITICALCVSS 9.8v15.03.06.42_multi2023-08-30
CVE-2023-41562 [CRITICAL] CWE-787 CVE-2023-41562: Tenda AC7 V1.0 V15.03.06.44, Tenda AC9 V3.0 V15.03.06.42_multi, and Tenda AC5 US_AC5V1.0RTL_V15.03.0 Tenda AC7 V1.0 V15.03.06.44, Tenda AC9 V3.0 V15.03.06.42_multi, and Tenda AC5 US_AC5V1.0RTL_V15.03.06.28 were discovered to contain a stack overflow via parameter time at url /goform/PowerSaveSet.
nvd
CVE-2022-25417P3CRITICALCVSS 9.8vv15.03.2.21_cn2022-02-24
CVE-2022-25417 [CRITICAL] CWE-787 CVE-2022-25417: Tenda AC9 V15.03.2.21_cn was discovered to contain a stack overflow via the function saveparentcontr Tenda AC9 V15.03.2.21_cn was discovered to contain a stack overflow via the function saveparentcontrolinfo.
nvd
CVE-2022-25418P3CRITICALCVSS 9.8vv15.03.2.21_cn2022-02-24
CVE-2022-25418 [CRITICAL] CWE-787 CVE-2022-25418: Tenda AC9 V15.03.2.21_cn was discovered to contain a stack overflow via the function openSchedWifi. Tenda AC9 V15.03.2.21_cn was discovered to contain a stack overflow via the function openSchedWifi.
nvd
CVE-2022-28560P3CRITICALCVSS 9.8v15.03.2.21_cn2022-05-03
CVE-2022-28560 [CRITICAL] CWE-787 CVE-2022-28560: There is a stack overflow vulnerability in the goform/fast_setting_wifi_set function in the httpd se There is a stack overflow vulnerability in the goform/fast_setting_wifi_set function in the httpd service of Tenda ac9 15.03.2.21_cn router. An attacker can obtain a stable shell through a carefully constructed payload
nvd
CVE-2022-27022P2CRITICALCVSS 9.8v15.03.2.21_cn2022-04-07
CVE-2022-27022 [CRITICAL] CWE-787 CVE-2022-27022: There is a stack overflow vulnerability in the SetSysTimeCfg() function in the httpd service of Tend There is a stack overflow vulnerability in the SetSysTimeCfg() function in the httpd service of Tenda AC9 V15.03.2.21_cn. The attacker can obtain a stable root shell through a constructed payload.
nvd
CVE-2022-25429P3CRITICALCVSS 9.8v15.03.2.212022-03-18
CVE-2022-25429 [CRITICAL] CWE-787 CVE-2022-25429: Tenda AC9 v15.03.2.21 was discovered to contain a buffer overflow via the time parameter in the save Tenda AC9 v15.03.2.21 was discovered to contain a buffer overflow via the time parameter in the saveparentcontrolinfo function.
nvd
CVE-2024-25751P2CRITICALCVSS 9.8v5.03.06.42_multi2024-02-26
CVE-2024-25751 [CRITICAL] CWE-121 CVE-2024-25751: A Stack Based Buffer Overflow vulnerability in Tenda AC9 v.3.0 with firmware version v.15.03.06.42_m A Stack Based Buffer Overflow vulnerability in Tenda AC9 v.3.0 with firmware version v.15.03.06.42_multi allows a remote attacker to execute arbitrary code via the fromSetSysTime function.
nvd
CVE-2023-41559P3CRITICALCVSS 9.8v15.03.06.42_multi2023-08-30
CVE-2023-41559 [CRITICAL] CWE-787 CVE-2023-41559: Tenda AC7 V1.0 V15.03.06.44, Tenda AC9 V3.0 V15.03.06.42_multi, and Tenda AC5 V1.0RTL_V15.03.06.28 w Tenda AC7 V1.0 V15.03.06.44, Tenda AC9 V3.0 V15.03.06.42_multi, and Tenda AC5 V1.0RTL_V15.03.06.28 were discovered to contain a stack overflow via parameter page at url /goform/NatStaticSetting.
nvd
CVE-2023-38930P3CRITICALCVSS 9.8v15.03.06.42_multi2023-08-07
CVE-2023-38930 [CRITICAL] CWE-787 CVE-2023-38930: Tenda AC7 V1.0,V15.03.06.44, F1203 V2.0.1.6, AC5 V1.0,V15.03.06.28, AC9 V3.0,V15.03.06.42_multi and Tenda AC7 V1.0,V15.03.06.44, F1203 V2.0.1.6, AC5 V1.0,V15.03.06.28, AC9 V3.0,V15.03.06.42_multi and FH1205 V2.0.0.7(775) were discovered to contain a stack overflow via the deviceId parameter in the addWifiMacFilter function.
nvd
CVE-2023-38936P3CRITICALCVSS 9.8v15.03.06.42_multi2023-08-07
CVE-2023-38936 [CRITICAL] CWE-787 CVE-2023-38936: Tenda AC10 V1.0 V15.03.06.23, AC1206 V15.03.06.23, AC6 V2.0 V15.03.06.23, AC7 V1.0 V15.03.06.44, AC5 Tenda AC10 V1.0 V15.03.06.23, AC1206 V15.03.06.23, AC6 V2.0 V15.03.06.23, AC7 V1.0 V15.03.06.44, AC5 V1.0 V15.03.06.28, FH1203 V2.0.1.6, AC9 V3.0 V15.03.06.42_multi and FH1205 V2.0.0.7(775) were discovered to contain a stack overflow via the speed_dir parameter in the formSetSpeedWan function.
nvd
CVE-2023-38933P3CRITICALCVSS 9.8v15.03.06.42_multi2023-08-07
CVE-2023-38933 [CRITICAL] CWE-787 CVE-2023-38933: Tenda AC6 V2.0 V15.03.06.23, AC7 V1.0 V15.03.06.44, F1203 V2.0.1.6, AC5 V1.0 V15.03.06.28, FH1203 V2 Tenda AC6 V2.0 V15.03.06.23, AC7 V1.0 V15.03.06.44, F1203 V2.0.1.6, AC5 V1.0 V15.03.06.28, FH1203 V2.0.1.6 and AC9 V3.0 V15.03.06.42_multi, and FH1205 V2.0.0.7(775) were discovered to contain a stack overflow via the deviceId parameter in the formSetClientState function.
nvd
CVE-2017-16923P3HIGHCVSS 8.8vus_ac9v1.0br_v15.03.05.14_multi_td01vac9_kf_v15.03.05.19\(6318_\)_cn2017-11-21
CVE-2017-16923 [HIGH] CWE-78 CVE-2017-16923: Command Injection vulnerability in app_data_center on Shenzhen Tenda Ac9 US_AC9V1.0BR_V15.03.05.14_m Command Injection vulnerability in app_data_center on Shenzhen Tenda Ac9 US_AC9V1.0BR_V15.03.05.14_multi_TD01, Ac9 ac9_kf_V15.03.05.19(6318_)_cn, Ac15 US_AC15V1.0BR_V15.03.05.18_multi_TD01, Ac15 US_AC15V1.0BR_V15.03.05.19_multi_TD01, Ac18 US_AC18V1.0BR_V15.03.05.05_multi_TD01, and Ac18 ac18_kf_V15.03.05.19(6318_)_cn devices allows remote unauthenticate
nvd
CVE-2022-25431P3CRITICALCVSS 9.8v15.03.2.212022-03-18
CVE-2022-25431 [CRITICAL] CWE-787 CVE-2022-25431: Tenda AC9 v15.03.2.21 was discovered to contain multiple stack overflows via the NPTR, V12, V10 and Tenda AC9 v15.03.2.21 was discovered to contain multiple stack overflows via the NPTR, V12, V10 and V11 parameter in the Formsetqosband function.
nvd
CVE-2026-2192P3HIGHCVSS 7.2v5.03.06.42_multi2026-02-08
CVE-2026-2192 [HIGH] CWE-119 CVE-2026-2192: A security vulnerability has been detected in Tenda AC9 15.03.06.42_multi. Affected by this vulnerab A security vulnerability has been detected in Tenda AC9 15.03.06.42_multi. Affected by this vulnerability is the function formGetRebootTimer. Such manipulation of the argument sys.schedulereboot.start_time/sys.schedulereboot.end_time leads to stack-based buffer overflow. The attack may be launched remotely. The exploit has been disclosed publicly and ma
nvd
CVE-2026-2191P3HIGHCVSS 7.2v15.03.06.42_multi2026-02-08
CVE-2026-2191 [HIGH] CWE-119 CVE-2026-2191: A weakness has been identified in Tenda AC9 15.03.06.42_multi. Affected is the function formGetDdosD A weakness has been identified in Tenda AC9 15.03.06.42_multi. Affected is the function formGetDdosDefenceList. This manipulation of the argument security.ddos.map causes stack-based buffer overflow. The attack may be initiated remotely. The exploit has been made available to the public and could be used for attacks.
nvd
CVE-2023-38937P3CRITICALCVSS 9.8v15.03.06.42_multi2023-08-07
CVE-2023-38937 [CRITICAL] CWE-787 CVE-2023-38937: Tenda AC10 V1.0 V15.03.06.23, AC1206 V15.03.06.23, AC8 v4 V16.03.34.06, AC6 V2.0 V15.03.06.23, AC7 V Tenda AC10 V1.0 V15.03.06.23, AC1206 V15.03.06.23, AC8 v4 V16.03.34.06, AC6 V2.0 V15.03.06.23, AC7 V1.0 V15.03.06.44, AC5 V1.0 V15.03.06.28, AC9 V3.0 V15.03.06.42_multi and AC10 v4.0 V16.03.10.13 were discovered to contain a stack overflow via the list parameter in the formSetVirtualSer function.
nvd
CVE-2022-36569P3HIGHCVSS 8.8v15.03.05.192022-08-31
CVE-2022-36569 [HIGH] CWE-787 CVE-2022-36569: Tenda AC9 V15.03.05.19 was discovered to contain a stack overflow via the deviceList parameter at /g Tenda AC9 V15.03.05.19 was discovered to contain a stack overflow via the deviceList parameter at /goform/setMacFilterCfg.
nvd
CVE-2022-36568P3HIGHCVSS 8.8v15.03.05.192022-08-31
CVE-2022-36568 [HIGH] CWE-787 CVE-2022-36568: Tenda AC9 V15.03.05.19 was discovered to contain a stack overflow via the list parameter at /goform/ Tenda AC9 V15.03.05.19 was discovered to contain a stack overflow via the list parameter at /goform/setPptpUserList.
nvd
CVE-2018-18728P3CRITICALCVSS 9.8v15.03.05.19\(6318\)_cn2018-10-29
CVE-2018-18728 [CRITICAL] CWE-78 CVE-2018-18728: An issue was discovered on Tenda AC9 V15.03.05.19(6318)_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05 An issue was discovered on Tenda AC9 V15.03.05.19(6318)_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05.19(6318)_CN devices. They allow remote code execution via shell metacharacters in the usbName field to the __fastcall function with a POST request.
nvd
Tenda Ac9 Firmware vulnerabilities | cvebase