Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Tenda — Vulnerabilities & Security Advisories 735

Browse all 735 CVE security advisories affecting Tenda. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Tenda operates primarily as a manufacturer of consumer networking hardware, including Wi-Fi routers and range extenders, targeting residential and small business markets. The company’s product line has been associated with a significant volume of security issues, currently totaling 730 recorded CVEs. Historically, these vulnerabilities frequently involve remote code execution, cross-site scripting, and privilege escalation flaws, often stemming from inadequate input validation and weak authentication mechanisms in embedded web interfaces. Notable incidents include the discovery of hardcoded credentials and command injection points that allow unauthenticated attackers to gain full administrative control over devices. These systemic weaknesses highlight persistent challenges in the security development lifecycle for budget-oriented IoT equipment, resulting in widespread exposure to botnet recruitment and network compromise.

Found 20 results / 735Clear Filters
CVE IDTitleCVSSSeverityPublished
CVE-2025-15356 Tenda AC20 PowerSaveSet sscanf buffer overflow — AC20CWE-120 8.8 High2025-12-30
CVE-2025-14656 Tenda AC20 openSchedWifi httpd buffer overflow — AC20CWE-120 8.8 High2025-12-14
CVE-2025-14655 Tenda AC20 httpd SetSysAutoRebbotCfg formSetRebootTimer stack-based overflow — AC20CWE-121 8.8 High2025-12-14
CVE-2025-14654 Tenda AC20 httpd setPptpUserList formSetPPTPUserList stack-based overflow — AC20CWE-121 8.8 High2025-12-14
CVE-2025-13258 Tenda AC20 WifiExtraSet buffer overflow — AC20CWE-120 8.8 High2025-11-17
CVE-2025-11385 Tenda AC20 fast_setting_wifi_set sscanf buffer overflow — AC20CWE-120 8.8 High2025-10-07
CVE-2025-10815 Tenda AC20 HTTP POST Request SetPptpServerCfg strcpy buffer overflow — AC20CWE-120 8.8 High2025-09-22
CVE-2025-10120 Tenda AC20 GetParentControlInfo strcpy buffer overflow — AC20CWE-120 8.8 High2025-09-09
CVE-2025-9791 Tenda AC20 fromAdvSetMacMtuWan stack-based overflow — AC20CWE-121 8.8 High2025-09-01
CVE-2025-9091 Tenda AC20 shadow hard-coded credentials — AC20CWE-798 2.5 Low2025-08-17
CVE-2025-9090 Tenda AC20 Telnet Service telnet websFormDefine command injection — AC20CWE-77 6.3 Medium2025-08-17
CVE-2025-9089 Tenda AC20 SetIpMacBind sub_48E628 stack-based overflow — AC20CWE-121 8.8 High2025-08-16
CVE-2025-9088 Tenda AC20 formSetVirtualSer save_virtualser_data stack-based overflow — AC20CWE-121 8.8 High2025-08-16
CVE-2025-9087 Tenda AC20 SetNetControlList Endpoint set_qosMib_list stack-based overflow — AC20CWE-121 8.8 High2025-08-16
CVE-2025-9046 Tenda AC20 setMacFilterCfg sub_46A2AC stack-based overflow — AC20CWE-121 8.8 High2025-08-15
CVE-2025-8940 Tenda AC20 saveParentControlInfo strcpy buffer overflow — AC20CWE-120 8.8 High2025-08-14
CVE-2025-8939 Tenda AC20 WifiGuestSet buffer overflow — AC20CWE-120 8.8 High2025-08-14
CVE-2025-8810 Tenda AC20 SetFirewallCfg strcpy stack-based overflow — AC20CWE-121 8.8 High2025-08-10
CVE-2025-8160 Tenda AC20 httpd SetSysTimeCfg buffer overflow — AC20CWE-120 8.8 High2025-07-25
CVE-2025-8131 Tenda AC20 SetStaticRouteCfg stack-based overflow — AC20CWE-121 8.8 High2025-07-25

This page lists every published CVE security advisory associated with Tenda. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.