Tenda
Tenda Ac18 Firmware: vulnerabilidades y CVE
Tenda Ac18 Firmware tiene 103 vulnerabilidades publicadas, 10 de ellas en los últimos 12 meses. 45 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE103
Últimos 12 meses10
Críticas45
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-31255 | Crítica (9.8) | 1.5% | — | 27 abr 2026 | A command injection vulnerability exists in Tenda AC18 V15.03.05.05_multi. The vulnerability is located in the /goform/SetSambaCfg interface, where improper handling of the guestuser parameter allows attackers to… |
| CVE-2025-14993 | Alta (7.4) | 0.78% | — | 21 dic 2025 | A vulnerability was detected in Tenda AC18 15.03.05.05. This affects the function sprintf of the file /goform/SetDlnaCfg of the component HTTP Request Handler. The manipulation of the argument scanList results in… |
| CVE-2025-14992 | Alta (7.4) | 0.74% | — | 21 dic 2025 | A security vulnerability has been detected in Tenda AC18 15.03.05.05. The impacted element is the function strcpy of the file /goform/GetParentControlInfo of the component HTTP Request Handler. The manipulation of the… |
| CVE-2025-63835 | Alta (8.8) | 0.65% | — | 10 nov 2025 | A stack-based buffer overflow vulnerability was discovered in Tenda AC18 v15.03.05.05_multi. The vulnerability exists in the guestSsid parameter of the /goform/WifiGuestSet interface. Remote attackers can exploit this… |
| CVE-2025-63834 | Media (5.4) | 0.22% | — | 10 nov 2025 | A stored cross-site scripting (XSS) vulnerability was discovered in Tenda AC18 v15.03.05.05_multi. The vulnerability exists in the ssid parameter of the wireless settings. Remote attackers can inject malicious payloads… |
| CVE-2025-11328 | Alta (7.4) | 1.1% | — | 6 oct 2025 | A vulnerability was detected in Tenda AC18 15.03.05.19(6318). This issue affects some unknown processing of the file /goform/SetDDNSCfg. The manipulation of the argument ddnsEn results in stack-based buffer overflow. It… |
| CVE-2025-11327 | Alta (7.4) | 1.2% | — | 6 oct 2025 | A security vulnerability has been detected in Tenda AC18 15.03.05.19(6318). This vulnerability affects unknown code of the file /goform/SetUpnpCfg. The manipulation of the argument upnpEn leads to stack-based buffer… |
| CVE-2025-11326 | Alta (7.4) | 1.2% | — | 6 oct 2025 | A weakness has been identified in Tenda AC18 15.03.05.19(6318). This affects an unknown part of the file /goform/WifiMacFilterSet. Executing a manipulation of the argument wifi_chkHz can lead to stack-based buffer… |
| CVE-2025-11325 | Alta (7.4) | 0.80% | — | 6 oct 2025 | A security flaw has been discovered in Tenda AC18 15.03.05.19(6318). Affected by this issue is some unknown functionality of the file /goform/fast_setting_pppoe_set. Performing a manipulation of the argument Username… |
| CVE-2025-11324 | Alta (7.4) | 0.83% | — | 6 oct 2025 | A vulnerability was identified in Tenda AC18 15.03.05.19(6318). Affected by this vulnerability is an unknown functionality of the file /goform/setNotUpgrade. Such manipulation of the argument newVersion leads to… |
| CVE-2025-60663 | Alta (7.5) | 0.40% | — | 2 oct 2025 | Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the wanMTU parameter in the fromAdvSetMacMtuWan function. |
| CVE-2025-60661 | Media (5.3) | 0.42% | — | 2 oct 2025 | Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the cloneType parameter in the fromAdvSetMacMtuWan function. |
| CVE-2025-60662 | Alta (7.5) | 0.49% | — | 2 oct 2025 | Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the wanSpeed parameter in the fromAdvSetMacMtuWan function. |
| CVE-2025-60660 | Alta (7.5) | 0.49% | — | 2 oct 2025 | Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the mac parameter in the fromAdvSetMacMtuWan function. |
| CVE-2025-11123 | Alta (7.4) | 0.80% | — | 28 sept 2025 | A flaw has been found in Tenda AC18 15.03.05.19. This impacts an unknown function of the file /goform/saveAutoQos. This manipulation of the argument enable causes stack-based buffer overflow. The attack may be initiated… |
| CVE-2025-11121 | Baja (2.1) | 3.7% | — | 28 sept 2025 | A security vulnerability has been detected in Tenda AC18 15.03.05.19. The impacted element is an unknown function of the file /goform/AdvSetLanip. The manipulation of the argument lanIp leads to command injection. The… |
| CVE-2025-11120 | Alta (7.4) | 3.7% | — | 28 sept 2025 | A weakness has been identified in Tenda AC8 16.03.34.06. The affected element is the function formSetServerConfig of the file /goform/SetServerConfig. Executing manipulation can lead to buffer overflow. It is possible… |
| CVE-2025-11122 | Alta (7.4) | 0.80% | — | 28 sept 2025 | A vulnerability was detected in Tenda AC18 15.03.05.19. This affects an unknown function of the file /goform/WizardHandle. The manipulation of the argument WANT/mtuvalue results in stack-based buffer overflow. The… |
| CVE-2025-9023 | Alta (7.4) | 0.82% | — | 15 ago 2025 | A vulnerability has been found in Tenda AC7 and AC18 15.03.05.19/15.03.06.44. Affected is the function formSetSchedLed of the file /goform/SetLEDCfg. The manipulation of the argument Time leads to buffer overflow. It is… |
| CVE-2025-8182 | Baja (2.9) | 0.44% | — | 26 jul 2025 | A vulnerability has been found in Tenda AC18 15.03.05.19 and classified as problematic. This vulnerability affects unknown code of the file /etc_ro/smb.conf of the component Samba. The manipulation leads to weak… |
| CVE-2025-5609 | Alta (8.7) | 0.96% | — | 4 jun 2025 | A vulnerability classified as critical was found in Tenda AC18 15.03.05.05. Affected by this vulnerability is the function fromadvsetlanip of the file /goform/AdvSetLanip. The manipulation of the argument lanMask leads… |
| CVE-2025-5608 | Alta (8.7) | 0.96% | — | 4 jun 2025 | A vulnerability classified as critical has been found in Tenda AC18 15.03.05.05. Affected is the function formsetreboottimer of the file /goform/SetSysAutoRebbotCfg. The manipulation of the argument rebootTime leads to… |
| CVE-2025-5607 | Alta (8.7) | 0.96% | — | 4 jun 2025 | A vulnerability was found in Tenda AC18 15.03.05.05. It has been rated as critical. This issue affects the function formSetPPTPUserList of the file /goform/setPptpUserList. The manipulation of the argument list leads to… |
| CVE-2025-5606 | Media (5.3) | 3.4% | — | 4 jun 2025 | A vulnerability was found in Tenda AC18 15.03.05.05. It has been declared as critical. This vulnerability affects the function formSetIptv of the file /goform/SetIPTVCfg. The manipulation of the argument list leads to… |
| CVE-2025-0528 | Alta (8.6) | 5.9% | — | 17 ene 2025 | A vulnerability, which was classified as critical, has been found in Tenda AC8, AC10 and AC18 16.03.10.20. Affected by this issue is some unknown functionality of the file /goform/telnet of the component HTTP Request… |
| CVE-2024-57583 | Crítica (9.8) | 1.5% | — | 16 ene 2025 | Tenda AC18 V15.03.05.19 was discovered to contain a command injection vulnerability via the usbName parameter in the formSetSambaConf function. |
| CVE-2024-57582 | Crítica (9.8) | 0.75% | — | 16 ene 2025 | Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the startIP parameter in the formSetPPTPServer function. |
| CVE-2024-57581 | Crítica (9.8) | 0.75% | — | 16 ene 2025 | Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the firewallEn parameter in the formSetFirewallCfg function. |
| CVE-2024-57580 | Crítica (9.8) | 0.77% | — | 16 ene 2025 | Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the devName parameter in the formSetDeviceName function. |
| CVE-2024-57579 | Crítica (9.8) | 0.68% | — | 16 ene 2025 | Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the limitSpeedUp parameter in the formSetClientState function. |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.