VendorsTendaac91.0
Vulnerabilities

Tenda AC9 1.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

21CVEs
CVE-2020-26728
A vulnerability was discovered in Tenda AC9 v3.0 V15.03.06.42_multi and Tenda AC9 V1.0 V15.03.05.19(6318)_CN which allows for remote code execution via shell metacharacters in the guestuser field to the __fastcall function with a POST request.
Published 2022-02-11 · Modified
9.8EPSS 0.038
CVE-2025-29384
In Tenda AC9 v1.0 V15.03.05.14_multi, the wanMTU parameter of /goform/AdvSetMacMtuWan has a stack overflow vulnerability, which can lead to remote arbitrary code execution.
Published 2025-03-14 · Modified
9.8EPSS 0.019
CVE-2025-22949
Tenda ac9 v1.0 firmware v15.03.05.19 is vulnerable to command injection in /goform/SetSambaCfg, which may lead to remote arbitrary code execution.
Published 2025-01-10 · Analyzed
9.8EPSS 0.019
CVE-2025-45042
Tenda AC9 v15.03.05.14 was discovered to contain a command injection vulnerability via the Telnet function.
Published 2025-05-05 · Analyzed
9.8EPSS 0.016
CVE-2023-38823
Buffer Overflow vulnerability in Tenda Ac19 v.1.0, AC18, AC9 v.1.0, AC6 v.2.0 and v.1.0 allows a remote attacker to execute arbitrary code via the formSetCfm function in bin/httpd.
Published 2023-11-20 · Modified
9.8EPSS 0.012
CVE-2025-45429
In the Tenda ac9 v1.0 router with firmware V15.03.05.14_multi, there is a stack overflow vulnerability in /goform/WifiWpsStart, which may lead to remote arbitrary code execution.
Published 2025-04-23 · Analyzed
9.8EPSS 0.011
CVE-2025-45428
In Tenda ac9 v1.0 with firmware V15.03.05.14_multi, the rebootTime parameter of /goform/SetSysAutoRebbotCfg has a stack overflow vulnerability, which can lead to remote arbitrary code execution.
Published 2025-04-23 · Analyzed
9.8EPSS 0.009
CVE-2025-45427
In Tenda AC9 v1.0 with firmware V15.03.05.14_multi, the security parameter of /goform/WifiBasicSet has a stack overflow vulnerability, which can lead to remote arbitrary code execution.
Published 2025-04-23 · Analyzed
9.8EPSS 0.009
CVE-2025-22946
Tenda ac9 v1.0 firmware v15.03.05.19 contains a stack overflow vulnerability in /goform/SetOnlineDevName, which may lead to remote arbitrary code execution.
Published 2025-01-10 · Analyzed
9.8EPSS 0.009
CVE-2025-29385
In Tenda AC9 v1.0 V15.03.05.14_multi, the cloneType parameter of /goform/AdvSetMacMtuWan has a stack overflow vulnerability, which can lead to remote arbitrary code execution.
Published 2025-03-14 · Modified
9.8EPSS 0.009
CVE-2025-29386
In Tenda AC9 v1.0 V15.03.05.14_multi, the mac parameter of /goform/AdvSetMacMtuWan has a stack overflow vulnerability, which can lead to remote arbitrary code execution.
Published 2025-03-14 · Modified
9.8EPSS 0.009
CVE-2025-10443
Tenda AC9/AC15 exeCommand formexeCommand buffer overflow
Published 2025-09-15 · Analyzed
9.0EPSS 0.040
CVE-2026-6016
Tenda AC9 POST Request WizardHandle decodePwd stack-based overflow
Published 2026-04-10 · Analyzed
9.0EPSS 0.010
CVE-2026-6015
Tenda AC9 POST Request QuickIndex formQuickIndex stack-based overflow
Published 2026-04-10 · Analyzed
9.0EPSS 0.010
CVE-2025-5839
Tenda AC9 POST Request AdvSetLanip fromadvsetlanip buffer overflow
Published 2025-06-07 · Analyzed
9.0EPSS 0.010
CVE-2025-5847
Tenda AC9 HTTP POST Request SetRemoteWebCfg formSetSafeWanWebMan stack-based overflow
Published 2025-06-08 · Analyzed
9.0EPSS 0.010
CVE-2025-10442
Tenda AC9/AC15 exeCommand formexeCommand os command injection
Published 2025-09-15 · Analyzed
8.8EPSS 0.083
CVE-2024-10280
Tenda AC6/AC7/AC8/AC9/AC10/AC10U/AC15/AC18/AC500/AC1206 GetIPTV websReadEvent null pointer dereference
Published 2024-10-23 · Analyzed
7.5EPSS 0.008
CVE-2025-29387
In Tenda AC9 v1.0 V15.03.05.14_multi, the wanSpeed parameter of /goform/AdvSetMacMtuWan has a stack overflow vulnerability, which can lead to remote arbitrary code execution.
Published 2025-03-14 · Analyzed
7.1EPSS 0.006
CVE-2025-5836
Tenda AC9 POST Request SetIPTVCfg formSetIptv command injection
Published 2025-06-07 · Analyzed
6.5EPSS 0.027
CVE-2021-42659
There is a buffer overflow vulnerability in the Web server httpd of the router in Tenda router devices such as Tenda AC9 V1.0 V15.03.02.19(6318) and Tenda AC9 V3.0 V15.03.06.42_multi. When setting the virtual service, the httpd program will crash and exit when the super-long list parameter occurs.
Published 2022-05-24 · Modified
6.5EPSS 0.008