Tenda
Tenda Ac10 Firmware: vulnerabilidades y CVE
Tenda Ac10 Firmware tiene 92 vulnerabilidades publicadas, 7 de ellas en los últimos 12 meses. 45 son críticas y 1 figuran en el catálogo de explotación activa de CISA.
CVE92
Últimos 12 meses7
Críticas45
Explotadas activamente1
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
🔴 Explotadas activamente (CISA KEV)
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2018-14558 | Crítica (9.8) | 8.7% | ⚠ Explotación activa | 30 oct 2018 | An issue was discovered on Tenda AC7 devices with firmware through V15.03.06.44_CN(AC7), AC9 devices with firmware through V15.03.05.19(6318)_CN(AC9), and AC10 devices with firmware through V15.03.06.23_CN(AC10). A… |
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-5550 | Alta (8.7) | 0.95% | — | 5 abr 2026 | A vulnerability was identified in Tenda AC10 16.03.10.10_multi_TDE01. This affects the function fromSysToolChangePwd of the file /bin/httpd. The manipulation leads to stack-based buffer overflow. The attack may be… |
| CVE-2026-5549 | Media (5.5) | 0.71% | — | 5 abr 2026 | A vulnerability was determined in Tenda AC10 16.03.10.10_multi_TDE01. Affected by this issue is some unknown functionality of the file /webroot_ro/pem/privkeySrv.pem of the component RSA 2048-bit Private Key Handler.… |
| CVE-2026-5548 | Alta (8.7) | 0.84% | — | 5 abr 2026 | A vulnerability was found in Tenda AC10 16.03.10.10_multi_TDE01. Affected by this vulnerability is the function fromSysToolChangePwd of the file /bin/httpd. Performing a manipulation of the argument sys.userpass results… |
| CVE-2026-5547 | Media (5.3) | 4.1% | — | 5 abr 2026 | A vulnerability has been found in Tenda AC10 16.03.10.10_multi_TDE01. Affected is the function formAddMacfilterRule of the file /bin/httpd. Such manipulation leads to os command injection. It is possible to launch the… |
| CVE-2025-67074 | Media (6.5) | 0.38% | — | 17 dic 2025 | A Buffer overflow vulnerability in function fromAdvSetMacMtuWan of bin httpd in Tenda AC10V4.0 V16.03.10.20 allows remote attackers to cause denial of service and possibly code execution by sending a post request with a… |
| CVE-2025-67073 | Crítica (9.8) | 0.69% | — | 17 dic 2025 | A Buffer overflow vulnerability in function fromAdvSetMacMtuWan of bin httpd in Tenda AC10V4.0 V16.03.10.20 allows remote attackers to cause denial of service and possibly code execution by sending a post request with a… |
| CVE-2025-12622 | Alta (7.4) | 0.83% | — | 3 nov 2025 | A vulnerability was determined in Tenda AC10 16.03.10.13. Affected by this vulnerability is the function formSysRunCmd of the file /goform/SysRunCmd. This manipulation of the argument getui causes buffer overflow. The… |
| CVE-2025-57219 | Media (5.3) | 0.24% | — | 28 ago 2025 | Incorrect access control in the endpoint /goform/ate of Tenda AC10 v4.0 firmware v16.03.10.09_multi_TDE01 allows attackers to escalate privileges or access sensitive components via a crafted request. |
| CVE-2025-57215 | Alta (7.5) | 0.39% | — | 28 ago 2025 | Tenda AC10 v4.0 firmware v16.03.10.20 was discovered to contain a stack overflow via the function get_parentControl_list_Info. |
| CVE-2025-57217 | Media (5.3) | 0.51% | — | 28 ago 2025 | Tenda AC10 v4.0 firmware v16.03.10.09_multi_TDE01 was discovered to contain a stack overflow via the Password parameter in the function R7WebsSecurityHandler. |
| CVE-2025-57220 | Media (5.3) | 0.80% | — | 28 ago 2025 | An input validation flaw in the 'ate' service of Tenda AC10 v4.0 firmware v16.03.10.09_multi_TDE01 to escalate privileges to root via a crafted UDP packet. |
| CVE-2025-57218 | Media (5.3) | 0.59% | — | 28 ago 2025 | Tenda AC10 v4.0 firmware v16.03.10.09_multi_TDE01 was discovered to contain a stack overflow via the security_5g parameter in the function sub_46284C. |
| CVE-2025-9309 | Baja (1.1) | 0.21% | — | 21 ago 2025 | A vulnerability was found in Tenda AC10 16.03.10.13. Affected is an unknown function of the file /etc_ro/shadow of the component MD5 Hash Handler. Performing manipulation results in hard-coded credentials. The attack… |
| CVE-2025-8178 | Alta (7.4) | 0.83% | — | 26 jul 2025 | A vulnerability classified as critical has been found in Tenda AC10 16.03.10.13. Affected is an unknown function of the file /goform/RequestsProcessLaid. The manipulation of the argument device1D leads to heap-based… |
| CVE-2025-5629 | Alta (8.7) | 0.83% | — | 5 jun 2025 | A vulnerability, which was classified as critical, was found in Tenda AC10 up to 15.03.06.47. This affects the function formSetPPTPServer of the file /goform/SetPptpServerCfg of the component HTTP Handler. The… |
| CVE-2025-4896 | Alta (8.7) | 0.84% | — | 18 may 2025 | A vulnerability was found in Tenda AC10 16.03.10.13 and classified as critical. Affected by this issue is some unknown functionality of the file /goform/UserCongratulationsExec. The manipulation of the argument getuid… |
| CVE-2025-44175 | Media (5.4) | 0.27% | — | 12 may 2025 | Tenda AC10 v4 V16.03.10.13 is vulnerable to Buffer Overflow in the GetParentControlInfo function. |
| CVE-2025-45779 | Crítica (9.8) | 6.5% | — | 12 may 2025 | Tenda AC10 V1.0re_V15.03.06.46 is vulnerable to Buffer Overflow in the formSetPPTPUserList handler via the list POST parameter. |
| CVE-2025-25455 | Alta (7.5) | 0.57% | — | 17 abr 2025 | Tenda AC10 V4.0si_V16.03.10.20 is vulnerable to Buffer Overflow in AdvSetMacMtuWan via wanMTU2. |
| CVE-2025-25454 | Alta (7.5) | 0.57% | — | 17 abr 2025 | Tenda AC10 V4.0si_V16.03.10.20 is vulnerable to Buffer Overflow in AdvSetMacMtuWan via wanSpeed2. |
| CVE-2025-25457 | Alta (7.5) | 0.67% | — | 17 abr 2025 | Tenda AC10 V4.0si_V16.03.10.20 is vulnerable to Buffer Overflow in AdvSetMacMtuWan via cloneType2. |
| CVE-2025-25458 | Media (4.6) | 0.26% | — | 15 abr 2025 | Tenda AC10 V4.0si_V16.03.10.20 is vulnerable to Buffer Overflow in AdvSetMacMtuWan via serverName2. |
| CVE-2025-25453 | Media (4.6) | 0.26% | — | 15 abr 2025 | Tenda AC10 V4.0si_V16.03.10.20 is vulnerable to Buffer Overflow in AdvSetMacMtuWan via serviceName2. |
| CVE-2025-25456 | Crítica (9.8) | 0.63% | — | 15 abr 2025 | Tenda AC10 V4.0si_V16.03.10.20 is vulnerable to Buffer Overflow in AdvSetMacMtuWan via mac2. |
| CVE-2025-3161 | Alta (8.7) | 0.90% | — | 3 abr 2025 | A vulnerability was found in Tenda AC10 16.03.10.13 and classified as critical. This issue affects the function ShutdownSetAdd of the file /goform/ShutdownSetAdd. The manipulation of the argument list leads to… |
| CVE-2025-25675 | Crítica (9.8) | 1.3% | — | 20 feb 2025 | Tenda AC10 V1.0 V15.03.06.23 has a command injection vulnerablility located in the formexeCommand function. The str variable receives the cmdinput parameter from a POST request and is later assigned to the cmd_buf… |
| CVE-2025-25674 | Crítica (9.8) | 0.45% | — | 20 feb 2025 | Tenda AC10 V1.0 V15.03.06.23 is vulnerable to Buffer Overflow in form_fast_setting_wifi_set via the parameter ssid. |
| CVE-2025-0528 | Alta (8.6) | 5.9% | — | 17 ene 2025 | A vulnerability, which was classified as critical, has been found in Tenda AC8, AC10 and AC18 16.03.10.20. Affected by this issue is some unknown functionality of the file /goform/telnet of the component HTTP Request… |
| CVE-2024-11248 | Alta (8.7) | 1.3% | — | 15 nov 2024 | A vulnerability was found in Tenda AC10 16.03.10.13 and classified as critical. Affected by this issue is the function formSetRebootTimer of the file /goform/SetSysAutoRebbotCfg. The manipulation of the argument… |
| CVE-2024-11061 | Alta (8.7) | 1.2% | — | 11 nov 2024 | A vulnerability classified as critical was found in Tenda AC10 16.03.10.13. Affected by this vulnerability is the function FUN_0044db3c of the file /goform/fast_setting_wifi_set. The manipulation of the argument… |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.