Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Tenda — Vulnerabilities & Security Advisories 735

Browse all 735 CVE security advisories affecting Tenda. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Tenda operates primarily as a manufacturer of consumer networking hardware, including Wi-Fi routers and range extenders, targeting residential and small business markets. The company’s product line has been associated with a significant volume of security issues, currently totaling 730 recorded CVEs. Historically, these vulnerabilities frequently involve remote code execution, cross-site scripting, and privilege escalation flaws, often stemming from inadequate input validation and weak authentication mechanisms in embedded web interfaces. Notable incidents include the discovery of hardcoded credentials and command injection points that allow unauthenticated attackers to gain full administrative control over devices. These systemic weaknesses highlight persistent challenges in the security development lifecycle for budget-oriented IoT equipment, resulting in widespread exposure to botnet recruitment and network compromise.

Found 15 results / 735Clear Filters
CVE IDTitleCVSSSeverityPublished
CVE-2026-5550 Tenda AC10 httpd fromSysToolChangePwd stack-based overflow — AC10CWE-121 8.8 High2026-04-05
CVE-2026-5549 Tenda AC10 RSA 2048-bit Private Key privkeySrv.pem hard-coded key — AC10CWE-321 5.3 Medium2026-04-05
CVE-2026-5548 Tenda AC10 httpd fromSysToolChangePwd stack-based overflow — AC10CWE-121 8.8 High2026-04-05
CVE-2026-5547 Tenda AC10 httpd formAddMacfilterRule os command injection — AC10CWE-78 6.3 Medium2026-04-05
CVE-2025-12622 Tenda AC10 SysRunCmd formSysRunCmd buffer overflow — AC10CWE-120 8.8 High2025-11-03
CVE-2025-9309 Tenda AC10 MD5 Hash shadow hard-coded credentials — AC10CWE-798 2.5 Low2025-08-21
CVE-2025-8178 Tenda AC10 RequestsProcessLaid heap-based overflow — AC10CWE-122 8.8 High2025-07-26
CVE-2025-5629 Tenda AC10 HTTP SetPptpServerCfg formSetPPTPServer buffer overflow — AC10CWE-120 8.8 High2025-06-05
CVE-2025-4896 Tenda AC10 UserCongratulationsExec buffer overflow — AC10CWE-120 8.8 High2025-05-18
CVE-2025-3161 Tenda AC10 ShutdownSetAdd stack-based overflow — AC10CWE-121 8.8 High2025-04-03
CVE-2024-11248 Tenda AC10 SetSysAutoRebbotCfg formSetRebootTimer stack-based overflow — AC10CWE-121 8.8 High2024-11-15
CVE-2024-11061 Tenda AC10 fast_setting_wifi_set FUN_0044db3c stack-based overflow — AC10CWE-121 8.8 High2024-11-11
CVE-2024-11056 Tenda AC10 WifiExtraSet FUN_0046AC38 stack-based overflow — AC10CWE-121 8.8 High2024-11-10
CVE-2024-2856 Tenda AC10 SetSysTimeCfg fromSetSysTime stack-based overflow — AC10CWE-121 8.8 High2024-03-24
CVE-2024-2581 Tenda AC10 SetStaticRouteCfg fromSetRouteStatic stack-based overflow — AC10CWE-121 8.8 High2024-03-18

This page lists every published CVE security advisory associated with Tenda. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.