VendorsTendaac7_firmware15.03.06.44
Vulnerabilities

Tenda ac7 Firmware 15.03.06.44

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

52CVEs
CVE-2025-11524
Tenda AC7 SetDDNSCfg stack-based overflow
Published 2025-10-09 · Analyzed
9.0EPSS 0.010
CVE-2026-4974
Tenda AC7 POST Request SetSysTimeCfg fromSetSysTime memory corruption
Published 2026-03-27 · Analyzed
9.0EPSS 0.010
CVE-2025-9023
Tenda AC7/AC18 SetLEDCfg formSetSchedLed buffer overflow
Published 2025-08-15 · Analyzed
9.0EPSS 0.008
CVE-2025-11526
Tenda AC7 WifiMacFilterSet stack-based overflow
Published 2025-10-09 · Modified
9.0EPSS 0.008
CVE-2025-11528
Tenda AC7 saveAutoQos stack-based overflow
Published 2025-10-09 · Analyzed
9.0EPSS 0.008
CVE-2025-11527
Tenda AC7 fast_setting_pppoe_set stack-based overflow
Published 2025-10-09 · Modified
9.0EPSS 0.008
CVE-2024-2897
Tenda AC7 WriteFacMac formWriteFacMac os command injection
Published 2024-03-26 · Analyzed
8.8EPSS 0.078
CVE-2025-11523
Tenda AC7 AdvSetLanip command injection
Published 2025-10-09 · Analyzed
8.8EPSS 0.037
CVE-2024-32281
Tenda AC7V1.0 v15.03.06.44 firmware contains a command injection vulnerablility in formexeCommand function via the cmdinput parameter.
Published 2024-04-17 · Analyzed
8.8EPSS 0.018
CVE-2024-48825
Tenda AC7 v.15.03.06.44 ate_ifconfig_set has pre-authentication command injection allowing remote attackers to execute arbitrary code.
Published 2024-10-28 · Analyzed
8.8EPSS 0.017
CVE-2024-48826
Tenda AC7 v.15.03.06.44 ate_iwpriv_set has pre-authentication command injection allowing remote attackers to execute arbitrary code.
Published 2024-10-28 · Analyzed
8.8EPSS 0.017
CVE-2024-10280
Tenda AC6/AC7/AC8/AC9/AC10/AC10U/AC15/AC18/AC500/AC1206 GetIPTV websReadEvent null pointer dereference
Published 2024-10-23 · Analyzed
7.5EPSS 0.008
← Prev2 / 2