Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

Tenda — Vulnerabilities & Security Advisories 740

Browse all 740 CVE security advisories affecting Tenda. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Tenda operates primarily as a manufacturer of consumer networking hardware, including Wi-Fi routers and range extenders, targeting residential and small business markets. The company’s product line has been associated with a significant volume of security issues, currently totaling 730 recorded CVEs. Historically, these vulnerabilities frequently involve remote code execution, cross-site scripting, and privilege escalation flaws, often stemming from inadequate input validation and weak authentication mechanisms in embedded web interfaces. Notable incidents include the discovery of hardcoded credentials and command injection points that allow unauthenticated attackers to gain full administrative control over devices. These systemic weaknesses highlight persistent challenges in the security development lifecycle for budget-oriented IoT equipment, resulting in widespread exposure to botnet recruitment and network compromise.

Found 37 results / 740Clear Filters
CVE IDTitleCVSSSeverityPublished
CVE-2026-5962 Tenda CH22 httpd R7WebsSecurityHandlerfunction path traversal — CH22CWE-22 7.3 High2026-04-09
CVE-2026-5605 Tenda CH22 WrlExtraSet formWrlExtraSet stack-based overflow — CH22CWE-121 8.8 High2026-04-05
CVE-2026-5604 Tenda CH22 Parameter CertLocalPrecreate formCertLocalPrecreate stack-based overflow — CH22CWE-121 8.8 High2026-04-05
CVE-2026-5204 Tenda CH22 Parameter webtypelibrary formWebTypeLibrary stack-based overflow — CH22CWE-121 8.8 High2026-03-31
CVE-2026-5156 Tenda CH22 Parameter QuickIndex formQuickIndex stack-based overflow — CH22CWE-121 8.8 High2026-03-30
CVE-2026-5155 Tenda CH22 Parameter AdvSetWan fromAdvSetWan stack-based overflow — CH22CWE-121 8.8 High2026-03-30
CVE-2026-5154 Tenda CH22 Parameter setcfm fromSetCfm stack-based overflow — CH22CWE-121 8.8 High2026-03-30
CVE-2026-5153 Tenda CH22 WriteFacMac FormWriteFacMac command injection — CH22CWE-77 6.3 Medium2026-03-30
CVE-2026-5152 Tenda CH22 createFileName formCreateFileName stack-based overflow — CH22CWE-121 8.8 High2026-03-30
CVE-2025-15229 Tenda CH22 DhcpListClient fromDhcpListClient denial of service — CH22CWE-404 5.3 Medium2025-12-30
CVE-2025-15076 Tenda CH22 public path traversal — CH22CWE-22 7.3 High2025-12-25
CVE-2025-14526 Tenda CH22 L7Im frmL7ImForm buffer overflow — CH22CWE-120 8.8 High2025-12-11
CVE-2025-13400 Tenda CH22 WrlExtraGet formWrlExtraGet buffer overflow — CH22CWE-120 8.8 High2025-11-19
CVE-2025-13288 Tenda CH22 PPTPUserSetting fromPptpUserSetting buffer overflow — CH22CWE-120 8.8 High2025-11-17
CVE-2025-12322 Tenda CH22 NatStaticSetting fromNatStaticSetting buffer overflow — CH22CWE-120 8.8 High2025-10-27
CVE-2025-12274 Tenda CH22 P2pListFilter fromP2pListFilter buffer overflow — CH22CWE-120 8.8 High2025-10-27
CVE-2025-12273 Tenda CH22 webExcptypemanFilter fromwebExcptypemanFilter buffer overflow — CH22CWE-120 8.8 High2025-10-27
CVE-2025-12272 Tenda CH22 addressNat fromAddressNat buffer overflow — CH22CWE-120 8.8 High2025-10-27
CVE-2025-12271 Tenda CH22 RouteStatic fromRouteStatic buffer overflow — CH22CWE-120 8.8 High2025-10-27
CVE-2025-12265 Tenda CH22 VirtualSer fromVirtualSer buffer overflow — CH22CWE-120 8.8 High2025-10-27
CVE-2025-12236 Tenda CH22 DhcpListClient fromDhcpListClient buffer overflow — CH22CWE-120 8.8 High2025-10-27
CVE-2025-12235 Tenda CH22 SetIpBind fromSetIpBind buffer overflow — CH22CWE-120 8.0 High2025-10-27
CVE-2025-12234 Tenda CH22 SafeMacFilter fromSafeMacFilter buffer overflow — CH22CWE-120 8.8 High2025-10-27
CVE-2025-12233 Tenda CH22 SafeUrlFilter fromSafeUrlFilter buffer overflow — CH22CWE-120 8.8 High2025-10-27
CVE-2025-12232 Tenda CH22 SafeClientFilter fromSafeClientFilter buffer overflow — CH22CWE-120 8.8 High2025-10-27
CVE-2025-11423 Tenda CH22 SafeEmailFilter formSafeEmailFilter memory corruption — CH22CWE-119 9.8 Critical2025-10-08
CVE-2025-11418 Tenda CH22 HTTP Request AdvSetWrlsafeset formWrlsafeset stack-based overflow — CH22CWE-121 9.8 Critical2025-10-08
CVE-2025-11117 Tenda CH22 GstDhcpSetSer formWrlExtraGet buffer overflow — CH22CWE-120 8.8 High2025-09-28
CVE-2025-9813 Tenda CH22 SetSambaConf formSetSambaConf buffer overflow — CH22CWE-120 8.8 High2025-09-02
CVE-2025-9812 Tenda CH22 exeCommand formexeCommand buffer overflow — CH22CWE-120 8.8 High2025-09-02

This page lists every published CVE security advisory associated with Tenda. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.