VendorsTendaac7all versions
Vulnerabilities

Tenda AC7

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

72CVEs
CVE-2018-14558
An issue was discovered on Tenda AC7 devices with firmware through V15.03.06.44_CN(AC7), AC9 devices with firmware through V15.03.05.19(6318)_CN(AC9), and AC10 devices with firmware through V15.03.06.23_CN(AC10). A command Injection vulnerability allows attackers to execute arbitrary OS commands via a crafted goform/setUsbUnload request. This occurs because the "formsetUsbUnload" function executes a dosystemCmd function with untrusted input.
Published 2018-10-30 · Analyzed
10.0KEVEPSS 0.087
CVE-2025-5861
Tenda AC7 AdvSetLanip fromadvsetlanip buffer overflow
Published 2025-06-09 · Analyzed
9.8EPSS 0.068
CVE-2025-1819
Tenda AC7 1200M telnet TendaTelnet os command injection
Published 2025-03-02 · Analyzed
9.8EPSS 0.018
CVE-2018-18729
An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05.19(6318)_CN devices. There is a heap-based buffer overflow vulnerability in the router's web server -- httpd. While processing the 'mac' parameter for a post request, the value is directly used in a strcpy to a variable placed on the heap, which can leak sensitive information or even hijack program control flow.
Published 2018-10-28 · Modified
9.8EPSS 0.013
CVE-2023-41556
Tenda AC7 V1.0 V15.03.06.44, Tenda AC9 V3.0 V15.03.06.42_multi, and Tenda AC5 V1.0RTL_V15.03.06.28 were discovered to contain a stack overflow via parameter list at url /goform/SetIpMacBind.
Published 2023-08-30 · Modified
9.8EPSS 0.011
CVE-2025-29135
A stack-based buffer overflow vulnerability in Tenda AC7 V15.03.06.44 allows a remote attacker to execute arbitrary code through a stack overflow attack using the security parameter of the formWifiBasicSet function.
Published 2025-03-24 · Analyzed
9.8EPSS 0.011
CVE-2025-5862
Tenda AC7 setPptpUserList formSetPPTPUserList buffer overflow
Published 2025-06-09 · Analyzed
9.8EPSS 0.010
CVE-2023-37716
Tenda F1202 V1.0BR_V1.2.0.20(408) and FH1202_V1.2.0.19_EN, AC10 V1.0, AC1206 V1.0, AC7 V1.0, AC5 V1.0, and AC9 V3.0 were discovered to contain a stack overflow in the page parameter in the function fromNatStaticSetting.
Published 2023-07-14 · Modified
9.8EPSS 0.009
CVE-2023-37717
Tenda F1202 V1.0BR_V1.2.0.20(408) and FH1202_V1.2.0.19_EN, AC10 V1.0, AC1206 V1.0, AC7 V1.0, AC5 V1.0, and AC9 V3.0 were discovered to contain a stack overflow in the page parameter in the function fromDhcpListClient.
Published 2023-07-14 · Modified
9.8EPSS 0.009
CVE-2023-37714
Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow in the page parameter in the function fromRouteStatic.
Published 2023-07-14 · Modified
9.8EPSS 0.009
CVE-2025-11586
Tenda AC7 setNotUpgrade stack-based overflow
Published 2025-10-10 · Analyzed
9.8EPSS 0.009
CVE-2023-38936
Tenda AC10 V1.0 V15.03.06.23, AC1206 V15.03.06.23, AC6 V2.0 V15.03.06.23, AC7 V1.0 V15.03.06.44, AC5 V1.0 V15.03.06.28, FH1203 V2.0.1.6, AC9 V3.0 V15.03.06.42_multi and FH1205 V2.0.0.7(775) were discovered to contain a stack overflow via the speed_dir parameter in the formSetSpeedWan function.
Published 2023-08-07 · Modified
9.8EPSS 0.009
CVE-2026-51846
In Tenda AC7 v15.03.06.44, the wanSpeed parameter of the route /goform/AdvSetMacMtuWan has a stack buffer overflow vulnerability that can lead to remote arbitrary code execution.
Published 2026-06-19 · Analyzed
9.8EPSS 0.008
CVE-2023-38931
Tenda AC10 V1.0 V15.03.06.23, AC1206 V15.03.06.23, AC8 v4 V16.03.34.06, AC6 V2.0 V15.03.06.23, AC7 V1.0 V15.03.06.44, F1203 V2.0.1.6, AC5 V1.0 V15.03.06.28, AC10 v4.0 V16.03.10.13 and FH1203 V2.0.1.6 were discovered to contain a stack overflow via the list parameter in the setaccount function.
Published 2023-08-07 · Modified
9.8EPSS 0.008
CVE-2023-38933
Tenda AC6 V2.0 V15.03.06.23, AC7 V1.0 V15.03.06.44, F1203 V2.0.1.6, AC5 V1.0 V15.03.06.28, FH1203 V2.0.1.6 and AC9 V3.0 V15.03.06.42_multi, and FH1205 V2.0.0.7(775) were discovered to contain a stack overflow via the deviceId parameter in the formSetClientState function.
Published 2023-08-07 · Modified
9.8EPSS 0.008
CVE-2023-41562
Tenda AC7 V1.0 V15.03.06.44, Tenda AC9 V3.0 V15.03.06.42_multi, and Tenda AC5 US_AC5V1.0RTL_V15.03.06.28 were discovered to contain a stack overflow via parameter time at url /goform/PowerSaveSet.
Published 2023-08-30 · Modified
9.8EPSS 0.008
CVE-2023-41555
Tenda AC7 V1.0 V15.03.06.44 was discovered to contain a stack overflow via parameter security_5g at url /goform/WifiBasicSet.
Published 2023-08-30 · Modified
9.8EPSS 0.008
CVE-2023-41559
Tenda AC7 V1.0 V15.03.06.44, Tenda AC9 V3.0 V15.03.06.42_multi, and Tenda AC5 V1.0RTL_V15.03.06.28 were discovered to contain a stack overflow via parameter page at url /goform/NatStaticSetting.
Published 2023-08-30 · Modified
9.8EPSS 0.008
CVE-2023-38930
Tenda AC7 V1.0,V15.03.06.44, F1203 V2.0.1.6, AC5 V1.0,V15.03.06.28, AC9 V3.0,V15.03.06.42_multi and FH1205 V2.0.0.7(775) were discovered to contain a stack overflow via the deviceId parameter in the addWifiMacFilter function.
Published 2023-08-07 · Modified
9.8EPSS 0.008
CVE-2023-41557
Tenda AC7 V1.0 V15.03.06.44 and Tenda AC5 V1.0RTL_V15.03.06.28 were discovered to contain a stack overflow via parameter entrys and mitInterface at url /goform/addressNat.
Published 2023-08-30 · Modified
9.8EPSS 0.008
CVE-2023-41558
Tenda AC7 V1.0 V15.03.06.44 was discovered to contain a stack overflow via parameter timeZone at url /goform/SetSysTimeCfg.
Published 2023-08-30 · Modified
9.8EPSS 0.008
CVE-2023-41552
Tenda AC7 V1.0 V15.03.06.44 and Tenda AC9 V3.0 V15.03.06.42_multi were discovered to contain a stack overflow via parameter ssid at url /goform/fast_setting_wifi_set.
Published 2023-08-30 · Modified
9.8EPSS 0.008
CVE-2023-38937
Tenda AC10 V1.0 V15.03.06.23, AC1206 V15.03.06.23, AC8 v4 V16.03.34.06, AC6 V2.0 V15.03.06.23, AC7 V1.0 V15.03.06.44, AC5 V1.0 V15.03.06.28, AC9 V3.0 V15.03.06.42_multi and AC10 v4.0 V16.03.10.13 were discovered to contain a stack overflow via the list parameter in the formSetVirtualSer function.
Published 2023-08-07 · Modified
9.8EPSS 0.008
CVE-2024-32301
Tenda AC7V1.0 v15.03.06.44 firmware has a stack overflow vulnerability via the PPW parameter in the fromWizardHandle function.
Published 2024-04-17 · Analyzed
9.8EPSS 0.008
CVE-2026-51844
Tenda AC7 v15.03.06.44 contains a stack buffer overflow vulnerability in the /goform/AdvSetMacMtuWan interface via the cloneType parameter.
Published 2026-06-19 · Analyzed
9.8EPSS 0.006
CVE-2026-51843
Tenda AC7 v15.03.06.44 contains a stack buffer overflow vulnerability in the /goform/AdvSetMacMtuWan interface via the wanMTU parameter.
Published 2026-06-19 · Analyzed
9.8EPSS 0.006
CVE-2026-51845
Tenda AC7 v15.03.06.44 contains a stack buffer overflow vulnerability in the /goform/AdvSetMacMtuWan interface via the mac parameter.
Published 2026-06-19 · Analyzed
9.8EPSS 0.006
CVE-2025-29137
Tenda AC7 V1.0 V15.03.06.44 found a buffer overflow caused by the timeZone parameter in the form_fast_setting_wifi_set function, which can cause RCE.
Published 2025-03-19 · Analyzed
9.8EPSS 0.005
CVE-2025-8017
Tenda AC7 httpd setMacFilterCfg formSetMacFilterCfg stack-based overflow
Published 2025-07-22 · Analyzed
9.0EPSS 0.104
CVE-2025-3346
Tenda AC7 SetPptpServerCfg formSetPPTPServer buffer overflow
Published 2025-04-07 · Analyzed
9.0EPSS 0.077
CVE-2024-2896
Tenda AC7 WifiWpsStart formWifiWpsStart stack-based overflow
Published 2024-03-26 · Analyzed
9.0EPSS 0.019
CVE-2024-2903
Tenda AC7 GetParentControlInfo stack-based overflow
Published 2024-03-26 · Analyzed
9.0EPSS 0.018
CVE-2024-2902
Tenda AC7 WifiGuestSet fromSetWifiGusetBasic stack-based overflow
Published 2024-03-26 · Analyzed
9.0EPSS 0.018
CVE-2024-2892
Tenda AC7 setcfm formSetCfm stack-based overflow
Published 2024-03-26 · Analyzed
9.0EPSS 0.017
CVE-2024-2893
Tenda AC7 SetOnlineDevName formSetDeviceName stack-based overflow
Published 2024-03-26 · Analyzed
9.0EPSS 0.017
CVE-2024-2891
Tenda AC7 QuickIndex formQuickIndex stack-based overflow
Published 2024-03-26 · Analyzed
9.0EPSS 0.017
CVE-2024-2895
Tenda AC7 WifiWpsOOB formWifiWpsOOB stack-based overflow
Published 2024-03-26 · Analyzed
9.0EPSS 0.017
CVE-2024-2898
Tenda AC7 SetStaticRouteCfg fromSetRouteStatic stack-based overflow
Published 2024-03-26 · Analyzed
9.0EPSS 0.017
CVE-2024-2899
Tenda AC7 WifiExtraSet fromSetWirelessRepeat stack-based overflow
Published 2024-03-26 · Analyzed
9.0EPSS 0.017
CVE-2024-2900
Tenda AC7 saveParentControlInfo stack-based overflow
Published 2024-03-26 · Analyzed
9.0EPSS 0.017
1 / 2Next →