VendorsTendaac8all versions
Vulnerabilities

Tenda AC8

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

48CVEs
CVE-2026-4253
Tenda AC8 Web UploadCfg route_set_user_policy_rule os command injection
Published 2026-03-16 · Analyzed
7.2EPSS 0.082
CVE-2025-51089
Tenda AC8V4 V16.03.34.06` was discovered to contain heap overflow at /goform/GetParentControlInfo.The manipulation of the argument `mac` leads to heap-based buffer overflow.
Published 2025-07-24 · Modified
6.5EPSS 0.068
CVE-2025-29118
Tenda AC8 V16.03.34.06 was discovered to contain a stack overflow via the src parameter in the function sub_47D878.
Published 2025-03-19 · Analyzed
6.5EPSS 0.003
CVE-2025-25510
Tenda AC8 V16.03.34.06 is vulnerable to Buffer Overflow in the get_parentControl_list_Info function.
Published 2025-02-21 · Analyzed
6.5EPSS 0.003
CVE-2025-51088
Tenda AC8V4 V16.03.34.06` was discovered to contain stack overflow at /goform/WifiGuestSet. The manipulation of the argument `shareSpeed` leads to stack-based buffer overflow.
Published 2025-07-24 · Modified
5.3EPSS 0.067
CVE-2025-51085
Tenda AC8V4 V16.03.34.06` was discovered to contain stack overflow at /goform/SetSysTimeCfg. The manipulation of the argument `timeZone` and `timeType` leads to stack-based buffer overflow.
Published 2025-07-24 · Modified
5.3EPSS 0.067
CVE-2025-51082
Tenda AC8V4 V16.03.34.06` was discovered to contain stack overflow at /goform/fast_setting_wifi_set. The manipulation of the argument `timeZone` leads to stack-based buffer overflow.
Published 2025-07-24 · Modified
5.3EPSS 0.004
CVE-2025-52054
An issue was discovered in Tenda AC8 v4.0 AC1200 Dual-band Gigabit Wireless Router AC8v4.0 Firmware 16.03.33.05. The root password of the device is calculated with a static string and the last two octets of the MAC address of the device. This allows an unauthenticated attacker to authenticate with network services on the device.
Published 2025-08-28 · Analyzed
5.3EPSS 0.003
← Prev2 / 2