VendorsTendaac61.0
Vulnerabilities

Tenda AC6 1.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

27CVEs
CVE-2023-38823
Buffer Overflow vulnerability in Tenda Ac19 v.1.0, AC18, AC9 v.1.0, AC6 v.2.0 and v.1.0 allows a remote attacker to execute arbitrary code via the formSetCfm function in bin/httpd.
Published 2023-11-20 · Modified
9.8EPSS 0.012
CVE-2023-40838
Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin function 'sub_3A1D0' contains a command execution vulnerability.
Published 2023-08-30 · Modified
9.8EPSS 0.011
CVE-2023-40839
Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin function 'sub_ADF3C' contains a command execution vulnerability. In the "formSetIptv" function, obtaining the "list" and "vlanId" fields, unfiltered passing these two fields as parameters to the "sub_ADF3C" function to execute commands.
Published 2023-08-30 · Modified
9.8EPSS 0.010
CVE-2025-5855
Tenda AC6 SetRebootTimer formSetRebootTimer stack-based overflow
Published 2025-06-09 · Analyzed
9.8EPSS 0.010
CVE-2023-40837
Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin function 'sub_ADD50' contains a command execution vulnerability. In the "formSetIptv" function, obtaining the "list" and "vlanId" fields, unfiltered passing these two fields as parameters to the "sub_ADD50" function to execute commands.
Published 2023-08-30 · Modified
9.8EPSS 0.009
CVE-2023-40846
Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin is vulnerable to Buffer Overflow via function sub_90998.
Published 2023-08-28 · Modified
9.8EPSS 0.008
CVE-2023-39670
Tenda AC6 _US_AC6V1.0BR_V15.03.05.16 was discovered to contain a buffer overflow via the function fgets.
Published 2023-08-18 · Modified
9.8EPSS 0.008
CVE-2023-40840
Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin is vulnerable to Buffer Overflow via function "fromGetWirelessRepeat."
Published 2023-08-30 · Modified
9.8EPSS 0.007
CVE-2023-40848
Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin is vulnerable to Buffer Overflow via the function "sub_7D858."
Published 2023-08-30 · Modified
9.8EPSS 0.007
CVE-2023-40847
Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin is vulnerable to Buffer Overflow via the function "initIpAddrInfo." In the function, it reads in a user-provided parameter, and the variable is passed to the function without any length check.
Published 2023-08-30 · Modified
9.8EPSS 0.007
CVE-2023-40845
Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin is vulnerable to Buffer Overflow via function 'sub_34FD0.' In the function, it reads user provided parameters and passes variables to the function without any length checks.
Published 2023-08-30 · Modified
9.8EPSS 0.007
CVE-2023-40844
Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin is vulnerable to Buffer Overflow via function 'formWifiBasicSet.'
Published 2023-08-30 · Modified
9.8EPSS 0.007
CVE-2023-40843
Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin is vulnerable to Buffer Overflow via function "sub_73004."
Published 2023-08-30 · Modified
9.8EPSS 0.007
CVE-2023-40842
Tengda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin is vulnerable to Buffer Overflow via function "R7WebsSecurityHandler."
Published 2023-08-30 · Modified
9.8EPSS 0.007
CVE-2023-40841
Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin is vulnerable to Buffer Overflow via function "add_white_node,"
Published 2023-08-30 · Modified
9.8EPSS 0.007
CVE-2025-52221
Tenda AC6 15.03.05.16_multi is vulnerable to Buffer Overflow in the formSetCfm function via the funcname, funcpara1, and funcpara2 parameters.
Published 2026-04-08 · Analyzed
9.8EPSS 0.004
CVE-2025-5853
Tenda AC6 SetRemoteWebCfg formSetSafeWanWebMan stack-based overflow
Published 2025-06-09 · Analyzed
9.0EPSS 0.071
CVE-2025-5852
Tenda AC6 setPptpUserList formSetPPTPUserList buffer overflow
Published 2025-06-09 · Analyzed
9.0EPSS 0.010
CVE-2025-5854
Tenda AC6 AdvSetLanip fromadvsetlanip buffer overflow
Published 2025-06-09 · Analyzed
9.0EPSS 0.010
CVE-2026-4960
Tenda AC6 POST Request WizardHandle fromWizardHandle stack-based overflow
Published 2026-03-27 · Analyzed
9.0EPSS 0.008
CVE-2026-4961
Tenda AC6 POST Request QuickIndex formQuickIndex stack-based overflow
Published 2026-03-27 · Analyzed
9.0EPSS 0.008
CVE-2025-57528
An issue was discovered in Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01 allowing attackers to cause a denial of service via the funcname, funcpara1, funcpara2 parameters to the formSetCfm function (uri path: SetCfm).
Published 2025-09-19 · Analyzed
7.7EPSS 0.004
CVE-2022-45640
Tenda Tenda AC6V1.0 V15.03.05.19 is affected by buffer overflow. Causes a denial of service (local).
Published 2022-12-01 · Modified
7.5EPSS 0.010
CVE-2022-45641
Tenda AC6V1.0 V15.03.05.19 is vulnerable to Buffer Overflow via formSetMacFilterCfg.
Published 2022-12-02 · Modified
7.5EPSS 0.008
CVE-2022-45674
Tenda AC6V1.0 V15.03.05.19 is vulnerable to Cross Site Request Forgery (CSRF) via function fromSysToolReboot.
Published 2022-12-02 · Modified
6.5EPSS 0.003
CVE-2022-45673
Tenda AC6V1.0 V15.03.05.19 is vulnerable to Cross Site Request Forgery (CSRF) via function fromSysToolRestoreSet.
Published 2022-12-02 · Modified
6.5EPSS 0.003
CVE-2025-44172
Tenda AC6 V15.03.05.16 was discovered to contain a stack overflow via the time parameter in the setSmartPowerManagement function.
Published 2025-06-02 · Analyzed
6.5EPSS 0.003