VendorsTendaac9_firmware15.03.05.19
Vulnerabilities

Tenda ac9 Firmware 15.03.05.19

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

7CVEs
CVE-2025-22949
Tenda ac9 v1.0 firmware v15.03.05.19 is vulnerable to command injection in /goform/SetSambaCfg, which may lead to remote arbitrary code execution.
Published 2025-01-10 · Analyzed
9.8EPSS 0.019
CVE-2025-22946
Tenda ac9 v1.0 firmware v15.03.05.19 contains a stack overflow vulnerability in /goform/SetOnlineDevName, which may lead to remote arbitrary code execution.
Published 2025-01-10 · Analyzed
9.8EPSS 0.009
CVE-2022-36568
Tenda AC9 V15.03.05.19 was discovered to contain a stack overflow via the list parameter at /goform/setPptpUserList.
Published 2022-08-31 · Modified
8.8EPSS 0.011
CVE-2022-36569
Tenda AC9 V15.03.05.19 was discovered to contain a stack overflow via the deviceList parameter at /goform/setMacFilterCfg.
Published 2022-08-31 · Modified
8.8EPSS 0.011
CVE-2022-36570
Tenda AC9 V15.03.05.19 was discovered to contain a stack overflow via the time parameter at /goform/SetLEDCfg.
Published 2022-08-31 · Modified
7.2EPSS 0.011
CVE-2022-36571
Tenda AC9 V15.03.05.19 was discovered to contain a stack overflow via the mask parameter at /goform/WanParameterSetting.
Published 2022-08-31 · Modified
7.2EPSS 0.011
CVE-2025-9731
Tenda AC9 Administrative shadow hard-coded credentials
Published 2025-08-31 · Analyzed
7.0EPSS 0.001