VYPR

Vendor CVEs

Tenda

All CVEs

2,166 total · sorted by risk
  • CVE-2024-3880MedApr 16, 2024
    risk 0.41cvss 6.3epss 0.04

    A vulnerability has been found in Tenda W30E 1.0.1.25(633) and classified as critical. This vulnerability affects the function formWriteFacMac of the file /goform/WriteFacMac. The manipulation of the argument mac leads to os command injection. The attack can be initiated…

  • CVE-2024-2854MedMar 24, 2024
    risk 0.41cvss 6.3epss 0.04

    A vulnerability classified as critical has been found in Tenda AC18 15.03.05.05. Affected is the function formSetSambaConf of the file /goform/setsambacfg. The manipulation of the argument usbName leads to os command injection. It is possible to launch the attack remotely. The…

  • CVE-2024-2853MedMar 24, 2024
    risk 0.41cvss 6.3epss 0.04

    A vulnerability was found in Tenda AC10U 15.03.06.48/15.03.06.49. It has been rated as critical. This issue affects the function formSetSambaConf of the file /goform/setsambacfg. The manipulation of the argument usbName leads to os command injection. The attack may be initiated…

  • CVE-2024-2851MedMar 24, 2024
    risk 0.41cvss 6.3epss 0.04

    A vulnerability was found in Tenda AC15 15.03.05.18/15.03.20_multi. It has been classified as critical. This affects the function formSetSambaConf of the file /goform/setsambacfg. The manipulation of the argument usbName leads to os command injection. It is possible to initiate…

  • CVE-2024-2812MedMar 22, 2024
    risk 0.41cvss 6.3epss 0.04

    A vulnerability was found in Tenda AC15 15.03.05.18/15.03.20_multi. It has been classified as critical. This affects the function formWriteFacMac of the file /goform/WriteFacMac. The manipulation of the argument mac leads to os command injection. It is possible to initiate the…

  • CVE-2024-2707MedMar 20, 2024
    risk 0.41cvss 6.3epss 0.05

    A vulnerability has been found in Tenda AC10U 15.03.06.49 and classified as critical. This vulnerability affects the function formWriteFacMac of the file /goform/WriteFacMac. The manipulation of the argument mac leads to os command injection. The attack can be initiated…

  • CVE-2024-0540MedJan 15, 2024
    risk 0.41cvss 6.3epss 0.01

    A vulnerability was found in Tenda W9 1.0.0.7(4456). It has been classified as critical. Affected is the function formOfflineSet of the component httpd. The manipulation of the argument ssidIndex leads to stack-based buffer overflow. It is possible to launch the attack remotely.…

  • CVE-2023-2923MedMay 27, 2023
    risk 0.41cvss 6.3epss 0.01

    A vulnerability classified as critical was found in Tenda AC6 US_AC6V1.0BR_V15.03.05.19. Affected by this vulnerability is the function fromDhcpListClient. The manipulation leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed…

  • CVE-2026-27512MedFeb 23, 2026
    risk 0.40cvss 6.1epss 0.00

    Shenzhen Tenda F3 Wireless Router firmware V12.01.01.55_multi contains a content-type confusion vulnerability in the administrative interface. Responses omit the X-Content-Type-Options: nosniff header and include attacker-influenced content that can be reflected into the…

  • CVE-2026-24426MedFeb 3, 2026
    risk 0.40cvss 6.1epss 0.00

    Shenzhen Tenda AC7 firmware version V03.03.03.01_cn and prior contain an improper output encoding vulnerability in the web management interface. User-supplied input is reflected in HTTP responses without adequate escaping, allowing injection of arbitrary HTML or JavaScript in a…

  • CVE-2020-10989MedJul 13, 2020
    risk 0.40cvss 6.1epss 0.01

    An XSS issue in the /goform/WifiBasicSet endpoint of Tenda AC15 AC1900 version 15.03.05.19 allows remote attackers to execute malicious payloads via the WifiName POST parameter.

  • CVE-2025-29032MedMar 14, 2025
    risk 0.39cvss 5.9epss 0.04

    Tenda AC9 v15.03.05.19(6318) was discovered to contain a buffer overflow via the formWifiWpsOOB function.

  • CVE-2026-24441MedFeb 3, 2026
    risk 0.38cvss 5.9epss 0.00

    Shenzhen Tenda AC7 firmware version V03.03.03.01_cn and prior expose account credentials in plaintext within HTTP responses, allowing an on-path attacker to obtain sensitive authentication material.

  • CVE-2024-32320MedApr 17, 2024
    risk 0.38cvss 5.9epss 0.01

    Tenda AC500 V2.0.1.9(1307) firmware has a stack overflow vulnerability via the timeZone parameter in the formSetTimeZone function.

  • CVE-2021-3186MedJan 26, 2021
    risk 0.38cvss 5.4epss 0.03

    A Stored Cross-site scripting (XSS) vulnerability in /main.html Wifi Settings in Tenda AC5 AC1200 version V15.03.06.47_multi allows remote attackers to inject arbitrary web script or HTML via the Wifi Name parameter.

  • CVE-2018-14497MedAug 4, 2018
    risk 0.38cvss 5.4epss 0.02

    Tenda D152 ADSL routers allow XSS via a crafted SSID.

  • CVE-2024-57577MedJan 16, 2025
    risk 0.37cvss 5.7epss 0.00

    Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the speed_dir parameter in the formSetSpeedWan function.

  • CVE-2024-32306MedApr 17, 2024
    risk 0.37cvss 5.7epss 0.00

    Tenda AC10U v1.0 Firmware v15.03.06.49 has a stack overflow vulnerability located via the PPW parameter in the fromWizardHandle function.

  • CVE-2024-32312MedApr 17, 2024
    risk 0.37cvss 5.7epss 0.00

    Tenda F1203 V2.0.1.6 firmware has a stack overflow vulnerability located in the adslPwd parameter of the formWanParameterSetting function.

  • CVE-2024-30629MedMar 29, 2024
    risk 0.37cvss 5.7epss 0.01

    Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the list1 parameter from fromDhcpListClient function.

  • CVE-2023-29681MedMay 1, 2023
    risk 0.37cvss 5.7epss 0.00

    Cleartext Transmission in cookie:ecos_pw: in Tenda N301 v6.0, firmware v12.03.01.06_pt allows an authenticated attacker on the LAN or WLAN to intercept communications with the router and obtain the password.

  • CVE-2023-29680MedMay 1, 2023
    risk 0.37cvss 5.7epss 0.00

    Cleartext Transmission in set-cookie:ecos_pw: Tenda N301 v6.0, Firmware v12.02.01.61_multi allows an authenticated attacker on the LAN or WLAN to intercept communications with the router and obtain the password.

  • CVE-2026-5683MedApr 6, 2026
    risk 0.36cvss 5.5epss 0.01

    A vulnerability was found in Tenda CX12L 16.03.53.12. Affected by this vulnerability is the function fromP2pListFilter of the file /goform/P2pListFilter. Performing a manipulation of the argument page results in stack-based buffer overflow. The attack must originate from the…

  • CVE-2026-24427MedFeb 3, 2026
    risk 0.36cvss 5.5epss 0.00

    Shenzhen Tenda AC7 firmware version V03.03.03.01_cn and prior expose sensitive information in web management responses. Administrative credentials, including the router and/or admin panel password, are included in plaintext within configuration response bodies. In addition,…

  • CVE-2026-24437MedJan 26, 2026
    risk 0.36cvss 5.5epss 0.00

    Shenzhen Tenda W30E V2 firmware versions up to and including V16.01.0.19(5037) serve sensitive administrative content without appropriate cache-control directives. As a result, browsers may store credential-bearing responses locally, exposing them to subsequent unauthorized…

  • CVE-2025-57573MedSep 10, 2025
    risk 0.36cvss 5.6epss 0.00

    Tenda F3 V12.01.01.48_multi and after is vulnerable to Buffer Overflow via the wifiTimeClose parameter in goform/setWifi.

  • CVE-2025-57572MedSep 10, 2025
    risk 0.36cvss 5.6epss 0.00

    Tenda F3 V12.01.01.48_multi and after is vulnerable to Buffer Overflow via the onlineList parameter in goform/setParentControl.

  • CVE-2025-57571MedSep 10, 2025
    risk 0.36cvss 5.6epss 0.00

    Tenda F3 V12.01.01.48_multi and after is vulnerable to Buffer Overflow. via the macFilterList parameter in goform/setNAT.

  • CVE-2025-57570MedSep 10, 2025
    risk 0.36cvss 5.6epss 0.00

    Tenda F3 V12.01.01.48_multi and after is vulnerable to Buffer Overflow via the QosList parameter in goform/setQoS.

  • CVE-2025-57569MedSep 10, 2025
    risk 0.36cvss 5.6epss 0.00

    Tenda F3 V12.01.01.48_multi and after is vulnerable to Buffer Overflow via the portList parameter in /goform/setNAT.

  • CVE-2025-8182MedJul 26, 2025
    risk 0.36cvss 5.6epss 0.00

    A vulnerability has been found in Tenda AC18 15.03.05.19 and classified as problematic. This vulnerability affects unknown code of the file /etc_ro/smb.conf of the component Samba. The manipulation leads to weak password requirements. The attack can be initiated remotely. The…

  • CVE-2024-2982MedMar 27, 2024
    risk 0.36cvss 5.5epss 0.08

    A vulnerability has been found in Tenda FH1202 1.2.0.14(408) and classified as critical. Affected by this vulnerability is the function formWriteFacMac of the file /goform/WriteFacMac. The manipulation of the argument mac leads to command injection. The exploit has been…

  • CVE-2024-24488MedFeb 7, 2024
    risk 0.36cvss 5.5epss 0.00

    An issue in Shenzen Tenda Technology CP3V2.0 V11.10.00.2311090948 allows a local attacker to obtain sensitive information via the password component.

  • CVE-2022-40103MedSep 23, 2022
    risk 0.36cvss 5.5epss 0.00

    Tenda i9 v1.0.0.8(3828) was discovered to contain a buffer overflow via the formSetAutoPing function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted string.

  • CVE-2022-37292MedAug 25, 2022
    risk 0.36cvss 5.5epss 0.00

    Tenda AX12 V22.03.01.21_CN is vulnerable to Buffer Overflow. This overflow is triggered in the sub_42FDE4 function, which satisfies the request of the upper-level interface function sub_430124, that is, handles the post request under /goform/SetIpMacBind.

  • CVE-2022-36233MedAug 19, 2022
    risk 0.36cvss 5.5epss 0.00

    Tenda AC9 V15.03.2.13 is vulnerable to Buffer Overflow via httpd, form_fast_setting_wifi_set. httpd.

  • CVE-2026-24433MedJan 26, 2026
    risk 0.35cvss 5.4epss 0.00

    Shenzhen Tenda W30E V2 firmware versions up to and including V16.01.0.19(5037) contain a stored cross-site scripting vulnerability in the user creation functionality. Insufficient input validation allows attacker-controlled script content to be stored and later executed when…

  • CVE-2025-15229MedDec 30, 2025
    risk 0.35cvss 5.3epss 0.04

    A vulnerability has been found in Tenda CH22 up to 1.0.0.1. Affected by this vulnerability is the function fromDhcpListClient of the file /goform/DhcpListClient. Such manipulation of the argument LISTLEN leads to denial of service. The attack may be launched remotely. The…

  • CVE-2025-63834MedNov 10, 2025
    risk 0.35cvss 5.4epss 0.00

    A stored cross-site scripting (XSS) vulnerability was discovered in Tenda AC18 v15.03.05.05_multi. The vulnerability exists in the ssid parameter of the wireless settings. Remote attackers can inject malicious payloads that execute when any user visits the router's homepage.

  • CVE-2025-10232MedSep 10, 2025
    risk 0.35cvss 5.4epss 0.00

    A weakness has been identified in 299ko up to 2.0.0. Affected by this issue is the function getSentDir/delete of the file plugin/filemanager/controllers/FileManagerAPIController.php. Executing manipulation can lead to path traversal. It is possible to launch the attack remotely.…

  • CVE-2025-57220MedAug 28, 2025
    risk 0.35cvss 5.3epss 0.01

    An input validation flaw in the 'ate' service of Tenda AC10 v4.0 firmware v16.03.10.09_multi_TDE01 to escalate privileges to root via a crafted UDP packet.

  • CVE-2025-51088MedJul 24, 2025
    risk 0.35cvss 5.3epss 0.07

    Tenda AC8V4 V16.03.34.06` was discovered to contain stack overflow at /goform/WifiGuestSet. The manipulation of the argument `shareSpeed` leads to stack-based buffer overflow.

  • CVE-2025-51085MedJul 24, 2025
    risk 0.35cvss 5.3epss 0.07

    Tenda AC8V4 V16.03.34.06` was discovered to contain stack overflow at /goform/SetSysTimeCfg. The manipulation of the argument `timeZone` and `timeType` leads to stack-based buffer overflow.

  • CVE-2025-44175MedMay 12, 2025
    risk 0.35cvss 5.4epss 0.00

    Tenda AC10 v4 V16.03.10.13 is vulnerable to Buffer Overflow in the GetParentControlInfo function.

  • CVE-2025-2996MedMar 31, 2025
    risk 0.35cvss 5.3epss 0.01

    A vulnerability was found in Tenda FH1202 1.2.0.14(408) and classified as critical. This issue affects some unknown processing of the file /goform/SysToolDDNS of the component Web Management Interface. The manipulation leads to improper access controls. The attack may be…

  • CVE-2025-2995MedMar 31, 2025
    risk 0.35cvss 5.3epss 0.01

    A vulnerability has been found in Tenda FH1202 1.2.0.14(408) and classified as critical. This vulnerability affects unknown code of the file /goform/SysToolChangePwd of the component Web Management Interface. The manipulation leads to improper access controls. The attack can be…

  • CVE-2025-2993MedMar 31, 2025
    risk 0.35cvss 5.3epss 0.11

    A vulnerability, which was classified as critical, has been found in Tenda FH1202 1.2.0.14(408). Affected by this issue is some unknown functionality of the file /default.cfg. The manipulation of the argument these leads to improper access controls. The attack may be launched…

  • CVE-2022-40010MedJun 26, 2023
    risk 0.35cvss 5.4epss 0.00

    Tenda AC6 AC1200 Smart Dual-Band WiFi Router 15.03.06.50_multi was discovered to contain a cross-site scripting (XSS) vulnerability via the deviceId parameter in the Parental Control module.

  • CVE-2022-40844MedNov 15, 2022
    risk 0.35cvss 5.4epss 0.01

    In Tenda (Shenzhen Tenda Technology Co., Ltd) AC1200 Router model W15Ev2 V15.11.0.10(1576), a Stored Cross Site Scripting (XSS) issue exists allowing an attacker to execute JavaScript code via the applications website filtering tab, specifically the URL body.

  • CVE-2018-20373MedDec 23, 2018
    risk 0.35cvss 5.4epss 0.01

    Tenda ADSL modem routers 1.0.1 allow XSS via the hostname of a DHCP client.

Page 41 of 44