VendorsTendaac9_firmware15.03.05.14
Vulnerabilities

Tenda ac9 Firmware 15.03.05.14

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

8CVEs
CVE-2025-29384
In Tenda AC9 v1.0 V15.03.05.14_multi, the wanMTU parameter of /goform/AdvSetMacMtuWan has a stack overflow vulnerability, which can lead to remote arbitrary code execution.
Published 2025-03-14 · Modified
9.8EPSS 0.019
CVE-2025-45042
Tenda AC9 v15.03.05.14 was discovered to contain a command injection vulnerability via the Telnet function.
Published 2025-05-05 · Analyzed
9.8EPSS 0.016
CVE-2025-29385
In Tenda AC9 v1.0 V15.03.05.14_multi, the cloneType parameter of /goform/AdvSetMacMtuWan has a stack overflow vulnerability, which can lead to remote arbitrary code execution.
Published 2025-03-14 · Modified
9.8EPSS 0.009
CVE-2025-29386
In Tenda AC9 v1.0 V15.03.05.14_multi, the mac parameter of /goform/AdvSetMacMtuWan has a stack overflow vulnerability, which can lead to remote arbitrary code execution.
Published 2025-03-14 · Modified
9.8EPSS 0.009
CVE-2025-10443
Tenda AC9/AC15 exeCommand formexeCommand buffer overflow
Published 2025-09-15 · Analyzed
9.0EPSS 0.040
CVE-2025-10442
Tenda AC9/AC15 exeCommand formexeCommand os command injection
Published 2025-09-15 · Analyzed
8.8EPSS 0.083
CVE-2024-10280
Tenda AC6/AC7/AC8/AC9/AC10/AC10U/AC15/AC18/AC500/AC1206 GetIPTV websReadEvent null pointer dereference
Published 2024-10-23 · Analyzed
7.5EPSS 0.008
CVE-2025-29387
In Tenda AC9 v1.0 V15.03.05.14_multi, the wanSpeed parameter of /goform/AdvSetMacMtuWan has a stack overflow vulnerability, which can lead to remote arbitrary code execution.
Published 2025-03-14 · Analyzed
7.1EPSS 0.006