Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Tenda — Vulnerabilities & Security Advisories 735

Browse all 735 CVE security advisories affecting Tenda. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Tenda operates primarily as a manufacturer of consumer networking hardware, including Wi-Fi routers and range extenders, targeting residential and small business markets. The company’s product line has been associated with a significant volume of security issues, currently totaling 730 recorded CVEs. Historically, these vulnerabilities frequently involve remote code execution, cross-site scripting, and privilege escalation flaws, often stemming from inadequate input validation and weak authentication mechanisms in embedded web interfaces. Notable incidents include the discovery of hardcoded credentials and command injection points that allow unauthenticated attackers to gain full administrative control over devices. These systemic weaknesses highlight persistent challenges in the security development lifecycle for budget-oriented IoT equipment, resulting in widespread exposure to botnet recruitment and network compromise.

CVE IDTitleCVSSSeverityPublished
CVE-2025-9007 Tenda CH22 editFileName formeditFileName buffer overflow — CH22CWE-120 8.8 High2025-08-15
CVE-2025-9006 Tenda CH22 delFileName formdelFileName buffer overflow — CH22CWE-120 8.8 High2025-08-15
CVE-2025-8980 Tenda G1 Firmware Update check_upload_file data authenticity — G1CWE-345 6.6 Medium2025-08-14
CVE-2025-8979 Tenda AC15 Firmware Update check_fw data authenticity — AC15CWE-345 6.6 Medium2025-08-14
CVE-2025-8958 Tenda TX3 fast_setting_wifi_set stack-based overflow — TX3CWE-121 8.8 High2025-08-14
CVE-2025-8940 Tenda AC20 saveParentControlInfo strcpy buffer overflow — AC20CWE-120 8.8 High2025-08-14
CVE-2025-8939 Tenda AC20 WifiGuestSet buffer overflow — AC20CWE-120 8.8 High2025-08-14
CVE-2025-8810 Tenda AC20 SetFirewallCfg strcpy stack-based overflow — AC20CWE-121 8.8 High2025-08-10
CVE-2025-8182 Tenda AC18 Samba smb.conf weak password — AC18CWE-521 5.6 Medium2025-07-26
CVE-2025-8180 Tenda CH22 deleteUserName formdeleteUserName buffer overflow — CH22CWE-120 8.8 High2025-07-26
CVE-2025-8178 Tenda AC10 RequestsProcessLaid heap-based overflow — AC10CWE-122 8.8 High2025-07-26
CVE-2025-8160 Tenda AC20 httpd SetSysTimeCfg buffer overflow — AC20CWE-120 8.8 High2025-07-25
CVE-2025-8131 Tenda AC20 SetStaticRouteCfg stack-based overflow — AC20CWE-121 8.8 High2025-07-25
CVE-2025-8060 Tenda AC23 httpd setMacFilterCfg sub_46C940 stack-based overflow — AC23CWE-121 8.8 High2025-07-23
CVE-2025-8017 Tenda AC7 httpd setMacFilterCfg formSetMacFilterCfg stack-based overflow — AC7CWE-121 8.8 High2025-07-22
CVE-2025-7914 Tenda AC6 httpd setparentcontrolinfo buffer overflow — AC6CWE-120 8.8 High2025-07-21
CVE-2025-7855 Tenda FH451 qossetting fromqossetting stack-based overflow — FH451CWE-121 8.8 High2025-07-19
CVE-2025-7854 Tenda FH451 VirtualSer fromVirtualSer stack-based overflow — FH451CWE-121 8.8 High2025-07-19
CVE-2025-7853 Tenda FH451 SetIpBind fromSetIpBind stack-based overflow — FH451CWE-121 8.8 High2025-07-19
CVE-2025-7807 Tenda FH451 SafeUrlFilter fromSafeUrlFilter stack-based overflow — FH451CWE-121 8.8 High2025-07-18
CVE-2025-7806 Tenda FH451 SafeClientFilter fromSafeClientFilter stack-based overflow — FH451CWE-121 8.8 High2025-07-18
CVE-2025-7805 Tenda FH451 PPTPUserSetting fromPptpUserSetting stack-based overflow — FH451CWE-121 8.8 High2025-07-18
CVE-2025-7796 Tenda FH451 PPTPDClient fromPptpUserAdd stack-based overflow — FH451CWE-121 8.8 High2025-07-18
CVE-2025-7795 Tenda FH451 P2pListFilter fromP2pListFilter stack-based overflow — FH451CWE-121 8.8 High2025-07-18
CVE-2025-7794 Tenda FH451 NatStaticSetting fromNatStaticSetting stack-based overflow — FH451CWE-121 8.8 High2025-07-18
CVE-2025-7793 Tenda FH451 webtypelibrary formWebTypeLibrary stack-based overflow — FH451CWE-121 8.8 High2025-07-18
CVE-2025-7792 Tenda FH451 SafeEmailFilter formSafeEmailFilter stack-based overflow — FH451CWE-121 8.8 High2025-07-18
CVE-2025-7747 Tenda FH451 POST Request WizardHandle fromWizardHandle buffer overflow — FH451CWE-120 8.8 High2025-07-17
CVE-2025-7598 Tenda AX1803 setWifiFilterCfg formSetWifiMacFilterCfg stack-based overflow — AX1803CWE-121 8.8 High2025-07-14
CVE-2025-7597 Tenda AX1803 setMacFilterCfg formSetMacFilterCfg stack-based overflow — AX1803CWE-121 8.8 High2025-07-14

This page lists every published CVE security advisory associated with Tenda. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.