Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

AC6 — Vulnerabilities & Security Advisories 18

All 18 CVE vulnerabilities found in AC6, with AI-generated Chinese analysis, references, and POCs.

This page documents Common Weakness Enumerations associated with the AC6 product developed by its vendor. It serves as a centralized resource for tracking security flaws, offering a structured view of the product's exposure to known vulnerability classes. The content aggregates publicly disclosed security issues, including software defects, configuration errors, and architectural weaknesses that impact the integrity or availability of the AC6 system. The collection covers vulnerability records spanning from the initial release of the product to the most recent advisories published by the vendor or discovered by independent security researchers. This time range ensures a comprehensive historical perspective, allowing users to analyze how the threat landscape has evolved alongside product updates and patch cycles. Users can utilize this aggregation to track a vendor's advisory history, gaining insight into their response times and remediation practices. The page also facilitates the understanding of a specific weakness class by contextualizing it within the specific technical environment of AC6. Additionally, visitors can look up a product's vulnerability history to identify persistent security patterns or regressions introduced in recent versions. By organizing these data points, the page provides a clear, factual overview of the security posture of AC6, supporting informed risk assessments and vulnerability management strategies without relying on speculative analysis or external commentary. This objective presentation aids developers, security analysts, and system administrators in making data-driven decisions regarding deployment and patching priorities.

Vendor: Tenda

CVE IDTitleCVSSSeverityPublished
CVE-2026-8265 Tenda AC6 httpd getLogFile get_log_file os command injection CWE-78 4.7 Medium2026-05-11
CVE-2026-8264 Tenda AC6 httpd WifiApScan formWifiApScan os command injection CWE-78 6.3 Medium2026-05-11
CVE-2026-8263 Tenda AC6 httpd WifiExtraSet fromSetWirelessRepeat os command injection CWE-78 4.7 Medium2026-05-11
CVE-2026-8259 Tenda AC6 httpd telnet os command injection CWE-78 4.7 Medium2026-05-11
CVE-2026-4961 Tenda AC6 POST Request QuickIndex formQuickIndex stack-based overflow CWE-121 8.8 High2026-03-27
CVE-2026-4960 Tenda AC6 POST Request WizardHandle fromWizardHandle stack-based overflow CWE-121 8.8 High2026-03-27
CVE-2025-12225 Tenda AC6 HTTP Request WifiGuestSet stack-based overflow CWE-121 8.8 High2025-10-27
CVE-2025-7914 Tenda AC6 httpd setparentcontrolinfo buffer overflow CWE-120 8.8 High2025-07-21
CVE-2025-5855 Tenda AC6 SetRebootTimer formSetRebootTimer stack-based overflow CWE-121 8.8 High2025-06-09
CVE-2025-5854 Tenda AC6 AdvSetLanip fromadvsetlanip buffer overflow CWE-120 8.8 High2025-06-09
CVE-2025-5853 Tenda AC6 SetRemoteWebCfg formSetSafeWanWebMan stack-based overflow CWE-121 8.8 High2025-06-09
CVE-2025-5852 Tenda AC6 setPptpUserList formSetPPTPUserList buffer overflow CWE-120 8.8 High2025-06-09
CVE-2025-1814 Tenda AC6 WifiExtraSet stack-based overflow CWE-121 8.8 High2025-03-02
CVE-2025-0349 Tenda AC6 GetParentControlInfo stack-based overflow CWE-121 8.8 High2025-01-09
CVE-2024-10698 Tenda AC6 SetOnlineDevName formSetDeviceName stack-based overflow CWE-121 8.8 High2024-11-02
CVE-2024-10697 Tenda AC6 API Endpoint WriteFacMac formWriteFacMac command injection CWE-77 6.3 Medium2024-11-02
CVE-2024-10280 Tenda AC6/AC7/AC8/AC9/AC10/AC10U/AC15/AC18/AC500/AC1206 GetIPTV websReadEvent null pointer dereference CWE-476 6.5 Medium2024-10-23
CVE-2023-2923 Tenda AC6 fromDhcpListClient stack-based overflow CWE-121 6.3 Medium2023-05-27

All 18 known CVE vulnerabilities affecting AC6 with full Chinese analysis, references, and POCs where available.