Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

Tenda — Vulnerabilities & Security Advisories 757

Browse all 757 CVE security advisories affecting Tenda. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Tenda operates primarily as a manufacturer of consumer networking hardware, including Wi-Fi routers and range extenders, targeting residential and small business markets. The company’s product line has been associated with a significant volume of security issues, currently totaling 730 recorded CVEs. Historically, these vulnerabilities frequently involve remote code execution, cross-site scripting, and privilege escalation flaws, often stemming from inadequate input validation and weak authentication mechanisms in embedded web interfaces. Notable incidents include the discovery of hardcoded credentials and command injection points that allow unauthenticated attackers to gain full administrative control over devices. These systemic weaknesses highlight persistent challenges in the security development lifecycle for budget-oriented IoT equipment, resulting in widespread exposure to botnet recruitment and network compromise.

Found 34 results / 757Clear Filters
CVE IDTitleCVSSSeverityPublished
CVE-2026-11493 Tenda AC15 Samba smb.conf weak password — AC15CWE-521 5.0 Medium2026-06-08
CVE-2026-5830 Tenda AC15 SysToolChangePwd websGetVar stack-based overflow — AC15CWE-121 8.8 High2026-04-09
CVE-2026-4975 Tenda AC15 POST Request setcfm formSetCfm memory corruption — AC15CWE-121 8.8 High2026-03-27
CVE-2026-3400 Tenda AC15 TextEditingConversion stack-based overflow — AC15CWE-121 8.8 High2026-03-01
CVE-2025-11389 Tenda AC15 saveAutoQos stack-based overflow — AC15CWE-121 8.8 High2025-10-07
CVE-2025-11388 Tenda AC15 setNotUpgrade stack-based overflow — AC15CWE-121 8.8 High2025-10-07
CVE-2025-11387 Tenda AC15 fast_setting_pppoe_set stack-based overflow — AC15CWE-121 8.8 High2025-10-07
CVE-2025-11386 Tenda AC15 POST Parameter SetDDNSCfg stack-based overflow — AC15CWE-121 8.8 High2025-10-07
CVE-2025-8979 Tenda AC15 Firmware Update check_fw data authenticity — AC15CWE-345 6.6 Medium2025-08-14
CVE-2025-5851 Tenda AC15 HTTP POST Request AdvSetLanip fromadvsetlanip buffer overflow — AC15CWE-120 8.8 High2025-06-08
CVE-2025-5850 Tenda AC15 HTTP POST Request SetLEDCf formsetschedled buffer overflow — AC15CWE-120 8.8 High2025-06-08
CVE-2025-5849 Tenda AC15 HTTP POST Request SetRemoteWebCfg formSetSafeWanWebMan stack-based overflow — AC15CWE-121 8.8 High2025-06-08
CVE-2025-5848 Tenda AC15 HTTP POST Request setPptpUserList formSetPPTPUserList buffer overflow — AC15CWE-120 8.8 High2025-06-08
CVE-2025-3786 Tenda AC15 WifiExtraSet fromSetWirelessRepeat buffer overflow — AC15CWE-120 8.8 High2025-04-18
CVE-2025-0566 Tenda AC15 SetDevNetName formSetDevNetName stack-based overflow — AC15CWE-121 8.8 High2025-01-19
CVE-2024-10662 Tenda AC15 SetOnlineDevName formSetDeviceName stack-based overflow — AC15CWE-121 8.8 High2024-11-01
CVE-2024-10661 Tenda AC15 SetDlnaCfg stack-based overflow — AC15CWE-121 8.8 High2024-11-01
CVE-2024-2855 Tenda AC15 SetSysTimeCfg fromSetSysTime stack-based overflow — AC15CWE-121 8.8 High2024-03-24
CVE-2024-2852 Tenda AC15 saveParentControlInfo stack-based overflow — AC15CWE-121 8.8 High2024-03-24
CVE-2024-2851 Tenda AC15 setsambacfg formSetSambaConf os command injection — AC15CWE-78 6.3 Medium2024-03-24
CVE-2024-2850 Tenda AC15 saveParentControlInfo stack-based overflow — AC15CWE-121 8.8 High2024-03-24
CVE-2024-2817 Tenda AC15 SysToolRestoreSet fromSysToolRestoreSet cross-site request forgery — AC15CWE-352 4.3 Medium2024-03-22
CVE-2024-2816 Tenda AC15 SysToolReboot fromSysToolReboot cross-site request forgery — AC15CWE-352 4.3 Medium2024-03-22
CVE-2024-2815 Tenda AC15 Cookie execCommand R7WebsSecurityHandler stack-based overflow — AC15CWE-121 8.8 High2024-03-22
CVE-2024-2814 Tenda AC15 DhcpListClient fromDhcpListClient stack-based overflow — AC15CWE-121 8.8 High2024-03-22
CVE-2024-2813 Tenda AC15 fast_setting_wifi_set form_fast_setting_wifi_set stack-based overflow — AC15CWE-121 8.8 High2024-03-22
CVE-2024-2812 Tenda AC15 WriteFacMac formWriteFacMac os command injection — AC15CWE-78 6.3 Medium2024-03-22
CVE-2024-2811 Tenda AC15 WifiWpsStart formWifiWpsStart stack-based overflow — AC15CWE-121 8.8 High2024-03-22
CVE-2024-2810 Tenda AC15 WifiWpsOOB formWifiWpsOOB stack-based overflow — AC15CWE-121 8.8 High2024-03-22
CVE-2024-2809 Tenda AC15 SetFirewallCfg formSetFirewallCfg stack-based overflow — AC15CWE-121 8.8 High2024-03-22

This page lists every published CVE security advisory associated with Tenda. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.