Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Tenda — Vulnerabilities & Security Advisories 735

Browse all 735 CVE security advisories affecting Tenda. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Tenda operates primarily as a manufacturer of consumer networking hardware, including Wi-Fi routers and range extenders, targeting residential and small business markets. The company’s product line has been associated with a significant volume of security issues, currently totaling 730 recorded CVEs. Historically, these vulnerabilities frequently involve remote code execution, cross-site scripting, and privilege escalation flaws, often stemming from inadequate input validation and weak authentication mechanisms in embedded web interfaces. Notable incidents include the discovery of hardcoded credentials and command injection points that allow unauthenticated attackers to gain full administrative control over devices. These systemic weaknesses highlight persistent challenges in the security development lifecycle for budget-oriented IoT equipment, resulting in widespread exposure to botnet recruitment and network compromise.

Found 29 results / 735Clear Filters
CVE IDTitleCVSSSeverityPublished
CVE-2026-4974 Tenda AC7 POST Request SetSysTimeCfg fromSetSysTime memory corruption — AC7CWE-121 8.8 High2026-03-27
CVE-2025-11586 Tenda AC7 setNotUpgrade stack-based overflow — AC7CWE-121 8.8 High2025-10-10
CVE-2025-11528 Tenda AC7 saveAutoQos stack-based overflow — AC7CWE-121 8.8 High2025-10-09
CVE-2025-11527 Tenda AC7 fast_setting_pppoe_set stack-based overflow — AC7CWE-121 8.8 High2025-10-09
CVE-2025-11526 Tenda AC7 WifiMacFilterSet stack-based overflow — AC7CWE-121 8.8 High2025-10-09
CVE-2025-11525 Tenda AC7 SetUpnpCfg stack-based overflow — AC7CWE-121 8.8 High2025-10-09
CVE-2025-11524 Tenda AC7 SetDDNSCfg stack-based overflow — AC7CWE-121 8.8 High2025-10-09
CVE-2025-11523 Tenda AC7 AdvSetLanip command injection — AC7CWE-77 6.3 Medium2025-10-09
CVE-2025-9023 Tenda AC7/AC18 SetLEDCfg formSetSchedLed buffer overflow — AC7CWE-120 8.8 High2025-08-15
CVE-2025-8017 Tenda AC7 httpd setMacFilterCfg formSetMacFilterCfg stack-based overflow — AC7CWE-121 8.8 High2025-07-22
CVE-2025-5862 Tenda AC7 setPptpUserList formSetPPTPUserList buffer overflow — AC7CWE-120 8.8 High2025-06-09
CVE-2025-5861 Tenda AC7 AdvSetLanip fromadvsetlanip buffer overflow — AC7CWE-120 8.8 High2025-06-09
CVE-2025-4810 Tenda AC7 SetRebootTimer formSetRebootTimer stack-based overflow — AC7CWE-121 8.8 High2025-05-16
CVE-2025-4809 Tenda AC7 setMacFilterCfg fromSafeSetMacFilter stack-based overflow — AC7CWE-121 8.8 High2025-05-16
CVE-2025-3346 Tenda AC7 SetPptpServerCfg formSetPPTPServer buffer overflow — AC7CWE-120 8.8 High2025-04-07
CVE-2025-1851 Tenda AC7 SetFirewallCfg formSetFirewallCfg stack-based overflow — AC7CWE-121 8.8 High2025-03-03
CVE-2024-2903 Tenda AC7 GetParentControlInfo stack-based overflow — AC7CWE-121 8.8 High2024-03-26
CVE-2024-2902 Tenda AC7 WifiGuestSet fromSetWifiGusetBasic stack-based overflow — AC7CWE-121 8.8 High2024-03-26
CVE-2024-2901 Tenda AC7 openSchedWifi setSchedWifi stack-based overflow — AC7CWE-121 8.8 High2024-03-26
CVE-2024-2900 Tenda AC7 saveParentControlInfo stack-based overflow — AC7CWE-121 8.8 High2024-03-26
CVE-2024-2899 Tenda AC7 WifiExtraSet fromSetWirelessRepeat stack-based overflow — AC7CWE-121 8.8 High2024-03-26
CVE-2024-2898 Tenda AC7 SetStaticRouteCfg fromSetRouteStatic stack-based overflow — AC7CWE-121 8.8 High2024-03-26
CVE-2024-2897 Tenda AC7 WriteFacMac formWriteFacMac os command injection — AC7CWE-78 6.3 Medium2024-03-26
CVE-2024-2896 Tenda AC7 WifiWpsStart formWifiWpsStart stack-based overflow — AC7CWE-121 8.8 High2024-03-26
CVE-2024-2895 Tenda AC7 WifiWpsOOB formWifiWpsOOB stack-based overflow — AC7CWE-121 8.8 High2024-03-26
CVE-2024-2894 Tenda AC7 SetNetControlList formSetQosBand stack-based overflow — AC7CWE-121 8.8 High2024-03-26
CVE-2024-2893 Tenda AC7 SetOnlineDevName formSetDeviceName stack-based overflow — AC7CWE-121 8.8 High2024-03-26
CVE-2024-2892 Tenda AC7 setcfm formSetCfm stack-based overflow — AC7CWE-121 8.8 High2024-03-26
CVE-2024-2891 Tenda AC7 QuickIndex formQuickIndex stack-based overflow — AC7CWE-121 8.8 High2024-03-26

This page lists every published CVE security advisory associated with Tenda. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.