VendorsTendaac6all versions
Vulnerabilities

Tenda AC6

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

112CVEs
CVE-2023-40843
Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin is vulnerable to Buffer Overflow via function "sub_73004."
Published 2023-08-30 · Modified
9.8EPSS 0.007
CVE-2023-40845
Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin is vulnerable to Buffer Overflow via function 'sub_34FD0.' In the function, it reads user provided parameters and passes variables to the function without any length checks.
Published 2023-08-30 · Modified
9.8EPSS 0.007
CVE-2023-40840
Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin is vulnerable to Buffer Overflow via function "fromGetWirelessRepeat."
Published 2023-08-30 · Modified
9.8EPSS 0.007
CVE-2023-40847
Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin is vulnerable to Buffer Overflow via the function "initIpAddrInfo." In the function, it reads in a user-provided parameter, and the variable is passed to the function without any length check.
Published 2023-08-30 · Modified
9.8EPSS 0.007
CVE-2023-40844
Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin is vulnerable to Buffer Overflow via function 'formWifiBasicSet.'
Published 2023-08-30 · Modified
9.8EPSS 0.007
CVE-2024-52275
Denial of Service on Tenda AC6V2 Due To Stack Overflow
Published 2024-12-04 · Analyzed
9.8EPSS 0.006
CVE-2025-24322
An unsafe default authentication vulnerability exists in the Initial Setup Authentication functionality of Tenda AC6 V5.0 V02.03.01.110. A specially crafted network request can lead to arbitrary code execution. An attacker can browse to the device to trigger this vulnerability.
Published 2025-08-20 · Modified
9.8EPSS 0.006
CVE-2024-52714
Tenda AC6 v2.0 v15.03.06.50 was discovered to contain a buffer overflow in the function 'fromSetSysTime.
Published 2024-11-19 · Modified
9.8EPSS 0.006
CVE-2025-29031
Tenda AC6 v15.03.05.16 was discovered to contain a buffer overflow via the fromAddressNat function.
Published 2025-03-14 · Modified
9.8EPSS 0.005
CVE-2025-29029
Tenda AC6 v15.03.05.16 was discovered to contain a buffer overflow via the formSetSpeedWan function.
Published 2025-03-14 · Modified
9.8EPSS 0.005
CVE-2025-29030
Tenda AC6 v15.03.05.16 was discovered to contain a buffer overflow via the formWifiWpsOOB function.
Published 2025-03-14 · Modified
9.8EPSS 0.005
CVE-2024-52274
Denial of Service on Tenda AC6V2 Due To Stack Overflow
Published 2024-12-04 · Analyzed
9.8EPSS 0.005
CVE-2024-52273
Denial of Service on Tenda AC6V2 Due To Stack Overflow
Published 2024-12-04 · Analyzed
9.8EPSS 0.005
CVE-2024-52272
Denial of Service on Tenda AC6V2 Due To Stack Overflow
Published 2024-12-04 · Analyzed
9.8EPSS 0.005
CVE-2025-52221
Tenda AC6 15.03.05.16_multi is vulnerable to Buffer Overflow in the formSetCfm function via the funcname, funcpara1, and funcpara2 parameters.
Published 2026-04-08 · Analyzed
9.8EPSS 0.004
CVE-2025-31355
A firmware update vulnerability exists in the Firmware Signature Validation functionality of Tenda AC6 V5.0 V02.03.01.110. A specially crafted malicious file can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.
Published 2025-08-20 · Modified
9.8EPSS 0.003
CVE-2025-5853
Tenda AC6 SetRemoteWebCfg formSetSafeWanWebMan stack-based overflow
Published 2025-06-09 · Analyzed
9.0EPSS 0.071
CVE-2026-4960
Tenda AC6 POST Request WizardHandle fromWizardHandle stack-based overflow
Published 2026-03-27 · Analyzed
9.0EPSS 0.010
CVE-2026-4961
Tenda AC6 POST Request QuickIndex formQuickIndex stack-based overflow
Published 2026-03-27 · Analyzed
9.0EPSS 0.010
CVE-2025-5852
Tenda AC6 setPptpUserList formSetPPTPUserList buffer overflow
Published 2025-06-09 · Analyzed
9.0EPSS 0.010
CVE-2025-5854
Tenda AC6 AdvSetLanip fromadvsetlanip buffer overflow
Published 2025-06-09 · Analyzed
9.0EPSS 0.010
CVE-2025-12225
Tenda AC6 HTTP Request WifiGuestSet stack-based overflow
Published 2025-10-27 · Analyzed
9.0EPSS 0.009
CVE-2025-7914
Tenda AC6 httpd setparentcontrolinfo buffer overflow
Published 2025-07-21 · Analyzed
9.0EPSS 0.009
CVE-2026-8264
Tenda AC6 httpd WifiApScan formWifiApScan os command injection
Published 2026-05-11 · Analyzed
8.8EPSS 0.065
CVE-2024-51116
Tenda AC6 v2.0 V15.03.06.50 was discovered to contain a buffer overflow in the function 'formSetPPTPServer'.
Published 2024-11-05 · Analyzed
8.8EPSS 0.004
CVE-2025-30256
A denial of service vulnerability exists in the HTTP Header Parsing functionality of Tenda AC6 V5.0 V02.03.01.110. A specially crafted series of HTTP requests can lead to a reboot. An attacker can send multiple network packets to trigger this vulnerability.
Published 2025-08-20 · Modified
8.6EPSS 0.004
CVE-2023-24332
A stack overflow vulnerability in Tenda AC6 with firmware version US_AC6V5.0re_V03.03.02.01_cn_TDC01 allows attackers to run arbitrary commands via crafted POST request to /goform/PowerSaveSet.
Published 2024-02-21 · Analyzed
8.1EPSS 0.006
CVE-2025-50258
Tenda AC6 v15.03.05.16_multi is vulnerable to Buffer Overflow in the SetSysTimeCfg function via the time parameter.
Published 2025-07-03 · Analyzed
8.1EPSS 0.004
CVE-2025-50263
Tenda AC6 v15.03.05.16_multi is vulnerable to Buffer Overflow in the fromSetRouteStatic function via the list parameter.
Published 2025-07-03 · Analyzed
8.1EPSS 0.004
CVE-2024-46450
Incorrect access control in Tenda AC1200 Smart Dual-Band WiFi Router Model AC6 v2.0 Firmware v15.03.06.50 allows attackers to bypass authentication via a crafted web request.
Published 2025-01-16 · Analyzed
8.1EPSS 0.004
CVE-2020-28095
On Tenda AC1200 (Model AC6) 15.03.06.51_multi devices, a large HTTP POST request sent to the change password API will trigger the router to crash and enter an infinite boot loop.
Published 2020-12-30 · Analyzed
7.8EPSS 0.012
CVE-2025-57528
An issue was discovered in Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01 allowing attackers to cause a denial of service via the funcname, funcpara1, funcpara2 parameters to the formSetCfm function (uri path: SetCfm).
Published 2025-09-19 · Analyzed
7.7EPSS 0.004
CVE-2023-26976
Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the ssid parameter in the form_fast_setting_wifi_set function.
Published 2023-04-04 · Modified
7.5EPSS 0.159
CVE-2022-45640
Tenda Tenda AC6V1.0 V15.03.05.19 is affected by buffer overflow. Causes a denial of service (local).
Published 2022-12-01 · Modified
7.5EPSS 0.010
CVE-2022-41481
Tenda AC1200 US_AC6V2.0RTL_V15.03.06.51_multi_TDE01 was discovered to contain a buffer overflow in the 0x47de1c function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request.
Published 2022-10-13 · Modified
7.5EPSS 0.009
CVE-2022-41483
Tenda AC1200 US_AC6V2.0RTL_V15.03.06.51_multi_TDE01 was discovered to contain a buffer overflow in the 0x4a12cc function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request.
Published 2022-10-13 · Modified
7.5EPSS 0.009
CVE-2022-41485
Tenda AC1200 US_AC6V2.0RTL_V15.03.06.51_multi_TDE01 was discovered to contain a buffer overflow in the 0x47ce00 function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request.
Published 2022-10-13 · Modified
7.5EPSS 0.009
CVE-2022-45641
Tenda AC6V1.0 V15.03.05.19 is vulnerable to Buffer Overflow via formSetMacFilterCfg.
Published 2022-12-02 · Modified
7.5EPSS 0.008
CVE-2024-10280
Tenda AC6/AC7/AC8/AC9/AC10/AC10U/AC15/AC18/AC500/AC1206 GetIPTV websReadEvent null pointer dereference
Published 2024-10-23 · Analyzed
7.5EPSS 0.008
CVE-2022-41480
Tenda AC1200 US_AC6V2.0RTL_V15.03.06.51_multi_TDE01 was discovered to contain a buffer overflow in the 0x475dc function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request.
Published 2022-10-13 · Modified
7.5EPSS 0.008
← Prev2 / 3Next →