VulnSea

tendacn has 8 CVEs on record between 2021 and 2022. The median CVSS is 8.8 (high), with 3 rated critical. None have a confirmed exploitation report. The most common weakness class is CWE-787 (4). Most affected products: ac23_ac2100_firmware (3), ac9_firmware (3), ac6_firmware (2).

CVEs per month

Last 12 months, by publish date

101112010203040506070809
Exploited share
0% vs 1% corpus
Median CVSS
8.8
Publish → KEV
Last 90 days
0 prev 0

Products

  • ac23_ac2100_firmware 3
  • ac9_firmware 3
  • ac6_firmware 2
8
Total CVEs
3
Critical
0
CISA KEV
0
Exploited

tendacn vulnerabilities

CVEs affecting tendacn, newest first. Open any entry for full detail, references, and exploit status.

8 CVEsRSS

CVE-2022-37176Critical· 9.8
4y ago

Tenda AC6(AC1200) v5.0 Firmware v02.03.01.114 and below contains a vulnerability which allows attackers to remove the Wi-Fi password and force the device into open security mode via a crafted packet sent to goform/setWizard.

Tenda AC6(AC1200) v5.0 Firmware v02.03.01.114 and below contains a vulnerability which allows attackers to remove the Wi-Fi password and force the device into open security mode via a crafted packet sent to goform/setWizard.

Midnighttendacn · ac6_firmwareEPSS 0.90%via NVD
CVE-2022-36552High· 7.5
4y ago

Tenda AC6(AC1200) v5.0 Firmware v02.03.01.114 and below contains an issue in the component /cgi-bin/DownloadFlash which allows attackers to steal all data such as source code and system files via a crafted GET request.

Tenda AC6(AC1200) v5.0 Firmware v02.03.01.114 and below contains an issue in the component /cgi-bin/DownloadFlash which allows attackers to steal all data such as source code and system files via a crafted GET request.

Twilighttendacn · ac6_firmwareEPSS 0.70%via NVD
CVE-2022-36233Medium· 5.5
4y ago

Tenda AC9 V15.03.2.13 is vulnerable to Buffer Overflow via httpd, form_fast_setting_wifi_set

Tenda AC9 V15.03.2.13 is vulnerable to Buffer Overflow via httpd, form_fast_setting_wifi_set. httpd.

Sunlittendacn · ac9_firmwareEPSS 0.25%via NVD
CVE-2022-32386Critical· 9.8
4y ago

Tenda AC23 v16.03.07.44 was discovered to contain a buffer overflow via fromAdvSetMacMtuWan.

Tenda AC23 v16.03.07.44 was discovered to contain a buffer overflow via fromAdvSetMacMtuWan.

Midnighttendacn · ac23_ac2100_firmwareEPSS 9.9%via NVD
CVE-2022-32385Critical· 9.8
4y ago

Tenda AC23 v16.03.07.44 is vulnerable to Stack Overflow that will allow for the execution of arbitrary code (remote).

Tenda AC23 v16.03.07.44 is vulnerable to Stack Overflow that will allow for the execution of arbitrary code (remote).

Midnighttendacn · ac23_ac2100_firmwareEPSS 2.0%via NVD
CVE-2022-32384High· 8.8
4y ago

Tenda AC23 v16.03.07.44 was discovered to contain a stack overflow via the security_5g parameter in the function formWifiBasicSet.

Tenda AC23 v16.03.07.44 was discovered to contain a stack overflow via the security_5g parameter in the function formWifiBasicSet.

Twilighttendacn · ac23_ac2100_firmwareEPSS 0.60%via NVD
CVE-2021-31624High· 8.8
4y ago

Buffer Overflow vulnerability in Tenda AC9 V1.0 through V15.03.05.19(6318), and AC9 V3.0 V15.03.06.42_multi, allows attackers to execute arbitrary code via the urls parameter.

Buffer Overflow vulnerability in Tenda AC9 V1.0 through V15.03.05.19(6318), and AC9 V3.0 V15.03.06.42_multi, allows attackers to execute arbitrary code via the urls parameter.

Twilighttendacn · ac9_firmwareEPSS 1.1%via NVD
CVE-2021-31627High· 8.8
4y ago

Buffer Overflow vulnerability in Tenda AC9 V1.0 through V15.03.05.19(6318), and AC9 V3.0 V15.03.06.42_multi, allows attackers to execute arbitrary code via the index parameter.

Buffer Overflow vulnerability in Tenda AC9 V1.0 through V15.03.05.19(6318), and AC9 V3.0 V15.03.06.42_multi, allows attackers to execute arbitrary code via the index parameter.

Twilighttendacn · ac9_firmwareEPSS 1.1%via NVD
tendacn vulnerabilities (CVEs) · VulnSea