Tenda Ax1803 Firmware vulnerabilities
60 known vulnerabilities affecting tenda/ax1803_firmware.
Total CVEs
60
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL31HIGH27MEDIUM2
Vulnerabilities
Page 1 of 3
CVE-2024-4236P2HIGHCVSS 8.8v1.0.0.12024-04-26
CVE-2024-4236 [HIGH] CWE-121 CVE-2024-4236: A vulnerability, which was classified as critical, has been found in Tenda AX1803 1.0.0.1. This issu
A vulnerability, which was classified as critical, has been found in Tenda AX1803 1.0.0.1. This issue affects the function formSetSysToolDDNS of the file /goform/SetDDNSCfg. The manipulation of the argument serverName/ddnsUser/ddnsPwd/ddnsDomain leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to
nvd
CVE-2026-1329P2HIGHCVSS 8.8v1.0.0.12026-01-22
CVE-2026-1329 [HIGH] CWE-119 CVE-2026-1329: A flaw has been found in Tenda AX1803 1.0.0.1. The affected element is the function fromGetWifiGuest
A flaw has been found in Tenda AX1803 1.0.0.1. The affected element is the function fromGetWifiGuestBasic of the file /goform/WifiGuestSet. Executing a manipulation of the argument guestWrlPwd/guestEn/guestSsid/hideSsid/guestSecurity can lead to stack-based buffer overflow. The attack may be launched remotely. The exploit has been published and may be u
nvd
CVE-2025-7598P2HIGHCVSS 8.8v1.0.0.12025-07-14
CVE-2025-7598 [HIGH] CWE-119 CVE-2025-7598: A vulnerability classified as critical was found in Tenda AX1803 1.0.0.1. Affected by this vulnerabi
A vulnerability classified as critical was found in Tenda AX1803 1.0.0.1. Affected by this vulnerability is the function formSetWifiMacFilterCfg of the file /goform/setWifiFilterCfg. The manipulation of the argument deviceList leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may
nvd
CVE-2025-7597P2HIGHCVSS 8.8v1.0.0.12025-07-14
CVE-2025-7597 [HIGH] CWE-119 CVE-2025-7597: A vulnerability classified as critical has been found in Tenda AX1803 1.0.0.1. Affected is the funct
A vulnerability classified as critical has been found in Tenda AX1803 1.0.0.1. Affected is the function formSetMacFilterCfg of the file /goform/setMacFilterCfg. The manipulation of the argument deviceList leads to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
nvd
CVE-2023-51972P2CRITICALCVSS 9.8v1.0.0.12024-01-10
CVE-2023-51972 [CRITICAL] CWE-77 CVE-2023-51972: Tenda AX1803 v1.0.0.1 was discovered to contain a command injection vulnerability via the function f
Tenda AX1803 v1.0.0.1 was discovered to contain a command injection vulnerability via the function fromAdvSetLanIp.
nvd
CVE-2022-34595P2CRITICALCVSS 9.8v1.0.0.1_28902022-07-06
CVE-2022-34595 [CRITICAL] CWE-78 CVE-2022-34595: Tenda AX1803 v1.0.0.1_2890 was discovered to contain a command injection vulnerability via the funct
Tenda AX1803 v1.0.0.1_2890 was discovered to contain a command injection vulnerability via the function setipv6status.
nvd
CVE-2022-34596P2CRITICALCVSS 9.8v1.0.0.1_28902022-07-06
CVE-2022-34596 [CRITICAL] CWE-78 CVE-2022-34596: Tenda AX1803 v1.0.0.1_2890 was discovered to contain a command injection vulnerability via the funct
Tenda AX1803 v1.0.0.1_2890 was discovered to contain a command injection vulnerability via the function WanParameterSetting.
nvd
CVE-2023-51963P2CRITICALCVSS 9.8v1.0.0.12024-01-10
CVE-2023-51963 [CRITICAL] CWE-787 CVE-2023-51963: Tenda AX1803 v1.0.0.1 contains a stack overflow via the iptv.city.vlan parameter in the function set
Tenda AX1803 v1.0.0.1 contains a stack overflow via the iptv.city.vlan parameter in the function setIptvInfo.
nvd
CVE-2024-30620P2CRITICALCVSS 9.8v1.0.0.12024-04-02
CVE-2024-30620 [CRITICAL] CWE-787 CVE-2024-30620: Tenda AX1803 v1.0.0.1 contains a stack overflow via the serviceName parameter in the function fromAd
Tenda AX1803 v1.0.0.1 contains a stack overflow via the serviceName parameter in the function fromAdvSetMacMtuWan.
nvd
CVE-2024-30621P2CRITICALCVSS 9.8v1.0.0.12024-04-02
CVE-2024-30621 [CRITICAL] CWE-787 CVE-2024-30621: Tenda AX1803 v1.0.0.1 contains a stack overflow via the serverName parameter in the function fromAdv
Tenda AX1803 v1.0.0.1 contains a stack overflow via the serverName parameter in the function fromAdvSetMacMtuWan.
nvd
CVE-2023-51969P2CRITICALCVSS 9.8v1.0.0.12024-01-10
CVE-2023-51969 [CRITICAL] CWE-787 CVE-2023-51969: Tenda AX1803 v1.0.0.1 contains a stack overflow via the iptv.city.vlan parameter in the function get
Tenda AX1803 v1.0.0.1 contains a stack overflow via the iptv.city.vlan parameter in the function getIptvInfo.
nvd
CVE-2023-51968P2CRITICALCVSS 9.8v1.0.0.12024-01-10
CVE-2023-51968 [CRITICAL] CWE-787 CVE-2023-51968: Tenda AX1803 v1.0.0.1 contains a stack overflow via the adv.iptv.stballvlans parameter in the functi
Tenda AX1803 v1.0.0.1 contains a stack overflow via the adv.iptv.stballvlans parameter in the function getIptvInfo.
nvd
CVE-2023-51966P2CRITICALCVSS 9.8v1.0.0.12024-01-10
CVE-2023-51966 [CRITICAL] CWE-787 CVE-2023-51966: Tenda AX1803 v1.0.0.1 contains a stack overflow via the adv.iptv.stballvlans parameter in the functi
Tenda AX1803 v1.0.0.1 contains a stack overflow via the adv.iptv.stballvlans parameter in the function setIptvInfo.
nvd
CVE-2023-51965P2CRITICALCVSS 9.8v1.0.0.12024-01-10
CVE-2023-51965 [CRITICAL] CWE-787 CVE-2023-51965: Tenda AX1803 v1.0.0.1 contains a stack overflow via the adv.iptv.stbpvid parameter in the function s
Tenda AX1803 v1.0.0.1 contains a stack overflow via the adv.iptv.stbpvid parameter in the function setIptvInfo.
nvd
CVE-2023-51956P2CRITICALCVSS 9.8v1.0.0.12024-01-10
CVE-2023-51956 [CRITICAL] CWE-787 CVE-2023-51956: Tenda AX1803 v1.0.0.1 contains a stack overflow via the iptv.city.vlan parameter in the function for
Tenda AX1803 v1.0.0.1 contains a stack overflow via the iptv.city.vlan parameter in the function formSetIptv
nvd
CVE-2023-51960P2CRITICALCVSS 9.8v1.0.0.12024-01-10
CVE-2023-51960 [CRITICAL] CWE-787 CVE-2023-51960: Tenda AX1803 v1.0.0.1 contains a stack overflow via the iptv.city.vlan parameter in the function for
Tenda AX1803 v1.0.0.1 contains a stack overflow via the iptv.city.vlan parameter in the function formGetIptv.
nvd
CVE-2023-51959P2CRITICALCVSS 9.8v1.0.0.12024-01-10
CVE-2023-51959 [CRITICAL] CWE-787 CVE-2023-51959: Tenda AX1803 v1.0.0.1 contains a stack overflow via the adv.iptv.stbpvid parameter in the function f
Tenda AX1803 v1.0.0.1 contains a stack overflow via the adv.iptv.stbpvid parameter in the function formGetIptv.
nvd
CVE-2023-51952P2CRITICALCVSS 9.8v1.0.0.12024-01-10
CVE-2023-51952 [CRITICAL] CWE-787 CVE-2023-51952: Tenda AX1803 v1.0.0.1 contains a stack overflow via the adv.iptv.stbpvid parameter in the function f
Tenda AX1803 v1.0.0.1 contains a stack overflow via the adv.iptv.stbpvid parameter in the function formSetIptv.
nvd
CVE-2023-51961P2CRITICALCVSS 9.8v1.0.0.12024-01-10
CVE-2023-51961 [CRITICAL] CWE-787 CVE-2023-51961: Tenda AX1803 v1.0.0.1 contains a stack overflow via the adv.iptv.stballvlans parameter in the functi
Tenda AX1803 v1.0.0.1 contains a stack overflow via the adv.iptv.stballvlans parameter in the function formGetIptv.
nvd
CVE-2023-51971P2CRITICALCVSS 9.8v1.0.0.12024-01-10
CVE-2023-51971 [CRITICAL] CWE-787 CVE-2023-51971: Tenda AX1803 v1.0.0.1 contains a stack overflow via the adv.iptv.stbpvid parameter in the function g
Tenda AX1803 v1.0.0.1 contains a stack overflow via the adv.iptv.stbpvid parameter in the function getIptvInfo.
nvd
1 / 3Next →