VendorsTendaac5_firmware15.03.06.47
Vulnerabilities

Tenda AC5 Firmware 15.03.06.47

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

11CVEs
CVE-2025-5863
Tenda AC5 SetRebootTimer formSetRebootTimer stack-based overflow
Published 2025-06-09 · Analyzed
9.8EPSS 0.010
CVE-2026-4902
Tenda AC5 POST Request addressNat fromAddressNat memory corruption
Published 2026-03-26 · Analyzed
9.0EPSS 0.010
CVE-2026-4903
Tenda AC5 POST Request QuickIndex formQuickIndex memory corruption
Published 2026-03-26 · Analyzed
9.0EPSS 0.010
CVE-2026-4904
Tenda AC5 POST Request setcfm formSetCfm stack-based overflow
Published 2026-03-26 · Analyzed
9.0EPSS 0.010
CVE-2026-4905
Tenda AC5 POST Request WifiWpsOOB formWifiWpsOOB stack-based overflow
Published 2026-03-26 · Analyzed
9.0EPSS 0.010
CVE-2026-4906
Tenda AC5 POST Request WizardHandle decodePwd stack-based overflow
Published 2026-03-27 · Analyzed
9.0EPSS 0.010
CVE-2025-5794
Tenda AC5 setPptpUserList formSetPPTPUserList buffer overflow
Published 2025-06-06 · Analyzed
9.0EPSS 0.010
CVE-2025-5795
Tenda AC5 AdvSetLanip fromadvsetlanip buffer overflow
Published 2025-06-06 · Analyzed
9.0EPSS 0.010
CVE-2025-6887
Tenda AC5 SetSysTimeCfg stack-based overflow
Published 2025-06-30 · Analyzed
9.0EPSS 0.009
CVE-2025-6886
Tenda AC5 openSchedWifi stack-based overflow
Published 2025-06-30 · Analyzed
9.0EPSS 0.009
CVE-2021-3186
A Stored Cross-site scripting (XSS) vulnerability in /main.html Wifi Settings in Tenda AC5 AC1200 version V15.03.06.47_multi allows remote attackers to inject arbitrary web script or HTML via the Wifi Name parameter.
Published 2021-01-24 · Analyzed
5.41 PoCEPSS 0.025