Tenda
Tenda AC9 Firmware: vulnerabilidades y CVE
Tenda AC9 Firmware tiene 92 vulnerabilidades publicadas, 5 de ellas en los últimos 12 meses. 55 son críticas y 1 figuran en el catálogo de explotación activa de CISA.
CVE92
Últimos 12 meses5
Críticas55
Explotadas activamente1
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
🔴 Explotadas activamente (CISA KEV)
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2018-14558 | Crítica (9.8) | 8.7% | ⚠ Explotación activa | 30 oct 2018 | An issue was discovered on Tenda AC7 devices with firmware through V15.03.06.44_CN(AC7), AC9 devices with firmware through V15.03.05.19(6318)_CN(AC9), and AC10 devices with firmware through V15.03.06.23_CN(AC10). A… |
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-6016 | Alta (7.4) | 1.0% | — | 10 abr 2026 | A vulnerability was found in Tenda AC9 15.03.02.13. The affected element is the function decodePwd of the file /goform/WizardHandle of the component POST Request Handler. Performing a manipulation of the argument WANS… |
| CVE-2026-6015 | Alta (7.4) | 1.0% | — | 10 abr 2026 | A vulnerability has been found in Tenda AC9 15.03.02.13. Impacted is the function formQuickIndex of the file /goform/QuickIndex of the component POST Request Handler. Such manipulation of the argument PPPOEPassword… |
| CVE-2026-2192 | Alta (7.3) | 0.70% | — | 8 feb 2026 | A security vulnerability has been detected in Tenda AC9 15.03.06.42_multi. Affected by this vulnerability is the function formGetRebootTimer. Such manipulation of the argument… |
| CVE-2026-2191 | Alta (7.3) | 0.70% | — | 8 feb 2026 | A weakness has been identified in Tenda AC9 15.03.06.42_multi. Affected is the function formGetDdosDefenceList. This manipulation of the argument security.ddos.map causes stack-based buffer overflow. The attack may be… |
| CVE-2025-14286 | Media (5.5) | 0.68% | — | 9 dic 2025 | A vulnerability was determined in Tenda AC9 15.03.05.14_multi. Affected by this vulnerability is an unknown functionality of the file /cgi-bin/DownloadCfg.jpg of the component Configuration File Handler. This… |
| CVE-2025-57638 | Alta (7.5) | 0.40% | — | 23 sept 2025 | Buffer overflow vulnerability in Tenda AC9 1.0 via the user supplied sys.vendor configuration value. |
| CVE-2025-57639 | Media (6.5) | 0.98% | — | 23 sept 2025 | OS Command injection vulnerability in Tenda AC9 1.0 was discovered to contain a command injection vulnerability via the usb.samba.guest.user parameter in the formSetSambaConf function of the httpd file. |
| CVE-2025-10443 | Alta (7.4) | 4.0% | — | 15 sept 2025 | A vulnerability was identified in Tenda AC9 and AC15 15.03.05.14/15.03.05.18. This vulnerability affects the function formexeCommand of the file /goform/exeCommand. Such manipulation of the argument cmdinput leads to… |
| CVE-2025-10442 | Baja (2.1) | 8.3% | — | 15 sept 2025 | A vulnerability was determined in Tenda AC9 and AC15 15.03.05.14. This affects the function formexeCommand of the file /goform/exeCommand. This manipulation of the argument cmdinput causes os command injection. Remote… |
| CVE-2025-9731 | Baja (1.1) | 0.14% | — | 31 ago 2025 | A vulnerability was determined in Tenda AC9 15.03.05.19. The impacted element is an unknown function of the file /etc_ro/shadow of the component Administrative Interface. This manipulation causes hard-coded credentials.… |
| CVE-2025-5900 | Baja (2.1) | 0.30% | — | 9 jun 2025 | A vulnerability, which was classified as problematic, was found in Tenda AC9 15.03.02.13. This affects an unknown part. The manipulation leads to cross-site request forgery. It is possible to initiate the attack… |
| CVE-2025-5847 | Alta (7.4) | 0.96% | — | 8 jun 2025 | A vulnerability has been found in Tenda AC9 15.03.02.13 and classified as critical. Affected by this vulnerability is the function formSetSafeWanWebMan of the file /goform/SetRemoteWebCfg of the component HTTP POST… |
| CVE-2025-5839 | Alta (7.4) | 0.99% | — | 7 jun 2025 | A vulnerability, which was classified as critical, has been found in Tenda AC9 15.03.02.13. Affected by this issue is the function fromadvsetlanip of the file /goform/AdvSetLanip of the component POST Request Handler.… |
| CVE-2025-5836 | Baja (2.1) | 2.7% | — | 7 jun 2025 | A vulnerability was found in Tenda AC9 15.03.02.13. It has been rated as critical. This issue affects the function formSetIptv of the file /goform/SetIPTVCfg of the component POST Request Handler. The manipulation of… |
| CVE-2025-45042 | Crítica (9.8) | 1.7% | — | 5 may 2025 | Tenda AC9 v15.03.05.14 was discovered to contain a command injection vulnerability via the Telnet function. |
| CVE-2025-44877 | Crítica (9.8) | 1.9% | — | 2 may 2025 | Tenda AC9 V15.03.06.42_multi was found to contain a command injection vulnerability in the formSetSambaConf function via the usbname parameter. This vulnerability allows attackers to execute arbitrary commands via a… |
| CVE-2025-44872 | Crítica (9.8) | 1.9% | — | 2 may 2025 | Tenda AC9 V15.03.06.42_multi was found to contain a command injection vulnerability in the formsetUsbUnload function via the deviceName parameter. This vulnerability allows attackers to execute arbitrary commands via a… |
| CVE-2025-45429 | Crítica (9.8) | 1.1% | — | 23 abr 2025 | In the Tenda ac9 v1.0 router with firmware V15.03.05.14_multi, there is a stack overflow vulnerability in /goform/WifiWpsStart, which may lead to remote arbitrary code execution. |
| CVE-2025-45428 | Crítica (9.8) | 0.92% | — | 23 abr 2025 | In Tenda ac9 v1.0 with firmware V15.03.05.14_multi, the rebootTime parameter of /goform/SetSysAutoRebbotCfg has a stack overflow vulnerability, which can lead to remote arbitrary code execution. |
| CVE-2025-45427 | Crítica (9.8) | 0.92% | — | 23 abr 2025 | In Tenda AC9 v1.0 with firmware V15.03.05.14_multi, the security parameter of /goform/WifiBasicSet has a stack overflow vulnerability, which can lead to remote arbitrary code execution. |
| CVE-2025-29387 | Alta (7.1) | 0.56% | — | 14 mar 2025 | In Tenda AC9 v1.0 V15.03.05.14_multi, the wanSpeed parameter of /goform/AdvSetMacMtuWan has a stack overflow vulnerability, which can lead to remote arbitrary code execution. |
| CVE-2025-29386 | Crítica (9.8) | 0.90% | — | 14 mar 2025 | In Tenda AC9 v1.0 V15.03.05.14_multi, the mac parameter of /goform/AdvSetMacMtuWan has a stack overflow vulnerability, which can lead to remote arbitrary code execution. |
| CVE-2025-29385 | Crítica (9.8) | 0.90% | — | 14 mar 2025 | In Tenda AC9 v1.0 V15.03.05.14_multi, the cloneType parameter of /goform/AdvSetMacMtuWan has a stack overflow vulnerability, which can lead to remote arbitrary code execution. |
| CVE-2025-29384 | Crítica (9.8) | 1.9% | — | 14 mar 2025 | In Tenda AC9 v1.0 V15.03.05.14_multi, the wanMTU parameter of /goform/AdvSetMacMtuWan has a stack overflow vulnerability, which can lead to remote arbitrary code execution. |
| CVE-2025-22949 | Crítica (9.8) | 1.9% | — | 10 ene 2025 | Tenda ac9 v1.0 firmware v15.03.05.19 is vulnerable to command injection in /goform/SetSambaCfg, which may lead to remote arbitrary code execution. |
| CVE-2025-22946 | Crítica (9.8) | 0.90% | — | 10 ene 2025 | Tenda ac9 v1.0 firmware v15.03.05.19 contains a stack overflow vulnerability in /goform/SetOnlineDevName, which may lead to remote arbitrary code execution. |
| CVE-2024-10280 | Alta (7.1) | 0.80% | — | 23 oct 2024 | A vulnerability was found in Tenda AC6, AC7, AC8, AC9, AC10, AC10U, AC15, AC18, AC500 and AC1206 up to 20241022. It has been rated as problematic. This issue affects the function websReadEvent of the file… |
| CVE-2024-42634 | Crítica (9.8) | 2.2% | — | 16 ago 2024 | A Command Injection vulnerability exists in formWriteFacMac of the httpd binary in Tenda AC9 v15.03.06.42. As a result, attacker can execute OS commands with root privileges. |
| CVE-2024-25751 | Crítica (9.8) | 0.98% | — | 26 feb 2024 | A Stack Based Buffer Overflow vulnerability in Tenda AC9 v.3.0 with firmware version v.15.03.06.42_multi allows a remote attacker to execute arbitrary code via the fromSetSysTime function. |
| CVE-2024-25756 | Alta (8) | 0.57% | — | 22 feb 2024 | A Stack Based Buffer Overflow vulnerability in Tenda AC9 v.3.0 with firmware version v.15.03.06.42_multi allows a remote attacker to execute arbitrary code via the formWifiBasicSet function. |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.