Critical severity9.8NVD Advisory· Published Jun 14, 2022· Updated Jun 17, 2026
CVE-2022-31446
CVE-2022-31446
Description
Tenda AC18 router V15.03.05.19 and V15.03.05.05 was discovered to contain a remote code execution (RCE) vulnerability via the Mac parameter at ip/goform/WriteFacMac.
Affected products
4cpe:2.3:o:tendacn:ac18_firmware:15.03.05.05:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:tendacn:ac18_firmware:15.03.05.05:*:*:*:*:*:*:*
- cpe:2.3:o:tendacn:ac18_firmware:15.03.05.19:*:*:*:*:*:*:*
- Tenda/AC18 routerdescription
Patches
Vulnerability mechanics
References
1- github.com/wshidamowang/Router/blob/main/Tenda/AC18/RCE_1.mdnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.