VendorsTendaac151.0
Vulnerabilities

Tenda AC15 1.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

21CVEs
CVE-2022-28557
There is a command injection vulnerability at the /goform/setsambacfg interface of Tenda AC15 US_AC15V1.0BR_V15.03.05.20_multi_TDE01.bin device web, which can also cooperate with CVE-2021-44971 to cause unconditional arbitrary command execution
Published 2022-05-04 · Modified
9.8EPSS 0.226
CVE-2021-44971
Multiple Tenda devices are affected by authentication bypass, such as AC15V1.0 Firmware V15.03.05.20_multi?AC5V1.0 Firmware V15.03.06.48_multi and so on. an attacker can obtain sensitive information, and even combine it with authenticated command injection to implement RCE.
Published 2022-01-28 · Modified
9.8EPSS 0.021
CVE-2024-2809
Tenda AC15 SetFirewallCfg formSetFirewallCfg stack-based overflow
Published 2024-03-22 · Modified
9.8EPSS 0.019
CVE-2026-24105
An issue was discovered in goform/formsetUsbUnload in Tenda AC15V1.0 V15.03.05.18_multi. The value of `v1` was not checked, potentially leading to a command injection vulnerability if injected into doSystemCmd.
Published 2026-03-02 · Analyzed
9.8EPSS 0.017
CVE-2026-24101
An issue was discovered in goform/formSetIptv in Tenda AC15V1.0 V15.03.05.18_multi. When the condition is met, `s1_1` will be passed into sub_B0488, concatenated into `doSystemCmd`. The value of s1_1 is not validated, potentially leading to a command injection vulnerability.
Published 2026-03-02 · Analyzed
9.8EPSS 0.017
CVE-2024-2807
Tenda AC15 expandDlnaFile formExpandDlnaFile stack-based overflow
Published 2024-03-22 · Modified
9.8EPSS 0.014
CVE-2024-2808
Tenda AC15 QuickIndex formQuickIndex stack-based overflow
Published 2024-03-22 · Modified
9.8EPSS 0.014
CVE-2024-2806
Tenda AC15 addWifiMacFilter stack-based overflow
Published 2024-03-22 · Modified
9.8EPSS 0.013
CVE-2024-2810
Tenda AC15 WifiWpsOOB formWifiWpsOOB stack-based overflow
Published 2024-03-22 · Modified
9.8EPSS 0.013
CVE-2024-2852
Tenda AC15 saveParentControlInfo stack-based overflow
Published 2024-03-24 · Modified
9.8EPSS 0.013
CVE-2024-2855
Tenda AC15 SetSysTimeCfg fromSetSysTime stack-based overflow
Published 2024-03-24 · Modified
9.8EPSS 0.013
CVE-2023-39673
Tenda AC15 V1.0BR_V15.03.05.18_multi_TD01 was discovered to contain a buffer overflow via the function FUN_00010e34().
Published 2023-08-18 · Modified
9.8EPSS 0.008
CVE-2026-24103
A buffer overflow vulnerability was discovered in goform/formSetMacFilterCfg in Tenda AC15V1.0 V15.03.05.18_multi.
Published 2026-03-03 · Analyzed
9.8EPSS 0.004
CVE-2025-5850
Tenda AC15 HTTP POST Request SetLEDCf formsetschedled buffer overflow
Published 2025-06-08 · Analyzed
9.0EPSS 0.062
CVE-2026-4975
Tenda AC15 POST Request setcfm formSetCfm memory corruption
Published 2026-03-27 · Analyzed
9.0EPSS 0.010
CVE-2025-5849
Tenda AC15 HTTP POST Request SetRemoteWebCfg formSetSafeWanWebMan stack-based overflow
Published 2025-06-08 · Analyzed
9.0EPSS 0.010
CVE-2025-5851
Tenda AC15 HTTP POST Request AdvSetLanip fromadvsetlanip buffer overflow
Published 2025-06-08 · Analyzed
9.0EPSS 0.010
CVE-2025-5848
Tenda AC15 HTTP POST Request setPptpUserList formSetPPTPUserList buffer overflow
Published 2025-06-08 · Analyzed
9.0EPSS 0.010
CVE-2024-2812
Tenda AC15 WriteFacMac formWriteFacMac os command injection
Published 2024-03-22 · Modified
8.8EPSS 0.041
CVE-2024-30645
Tenda AC15V1.0 V15.03.20_multi has a command injection vulnerability via the deviceName parameter.
Published 2024-03-29 · Analyzed
8.0EPSS 0.010
CVE-2022-28556
Tenda AC15 US_AC15V1.0BR_V15.03.05.20_multi_TDE01.bin is vulnerable to Buffer Overflow. The stack overflow vulnerability lies in the /goform/setpptpservercfg interface of the web. The sent post data startip and endip are copied to the stack using the sanf function, resulting in stack overflow. Similarly, this vulnerability can be used together with CVE-2021-44971
Published 2022-05-04 · Modified
7.5EPSS 0.011