Tenda
Tenda Ax1803 Firmware: vulnerabilidades y CVE
Tenda Ax1803 Firmware tiene 60 vulnerabilidades publicadas, 7 de ellas en los últimos 12 meses. 31 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE60
Últimos 12 meses7
Críticas31
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-1329 | Alta (7.4) | 1.2% | — | 22 ene 2026 | A flaw has been found in Tenda AX1803 1.0.0.1. The affected element is the function fromGetWifiGuestBasic of the file /goform/WifiGuestSet. Executing a manipulation of the argument… |
| CVE-2025-70648 | Alta (7.5) | 0.36% | — | 21 ene 2026 | Tenda AX1803 v1.0.0.1 was discovered to contain a stack overflow in the security_5g parameter of the sub_727F4 function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request. |
| CVE-2025-70646 | Alta (7.5) | 0.36% | — | 21 ene 2026 | Tenda AX1803 v1.0.0.1 was discovered to contain a stack overflow in the security parameter of the sub_72290 function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request. |
| CVE-2025-70651 | Alta (7.5) | 0.36% | — | 21 ene 2026 | Tenda AX-1803 v1.0.0.1 was discovered to contain a stack overflow in the ssid parameter of the form_fast_setting_wifi_set function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted… |
| CVE-2025-63457 | Alta (7.5) | 0.37% | — | 10 nov 2025 | Tenda AX-1803 v1.0.0.1 was discovered to contain a stack overflow via the wanMTU parameter in the sub_4F55C function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request. |
| CVE-2025-63456 | Alta (7.5) | 0.37% | — | 10 nov 2025 | Tenda AX-1803 v1.0.0.1 was discovered to contain a stack overflow via the time parameter in the SetSysTimeCfg function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request. |
| CVE-2025-63458 | Alta (7.5) | 0.40% | — | 31 oct 2025 | Tenda AX-1803 v1.0.0.1 was discovered to contain a stack overflow via the timeZone parameter in the form_fast_setting_wifi_set function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a… |
| CVE-2025-7598 | Alta (7.4) | 0.82% | — | 14 jul 2025 | A vulnerability classified as critical was found in Tenda AX1803 1.0.0.1. Affected by this vulnerability is the function formSetWifiMacFilterCfg of the file /goform/setWifiFilterCfg. The manipulation of the argument… |
| CVE-2025-7597 | Alta (7.4) | 0.82% | — | 14 jul 2025 | A vulnerability classified as critical has been found in Tenda AX1803 1.0.0.1. Affected is the function formSetMacFilterCfg of the file /goform/setMacFilterCfg. The manipulation of the argument deviceList leads to… |
| CVE-2024-4236 | Alta (8.8) | 15% | — | 26 abr 2024 | A vulnerability, which was classified as critical, has been found in Tenda AX1803 1.0.0.1. This issue affects the function formSetSysToolDDNS of the file /goform/SetDDNSCfg. The manipulation of the argument… |
| CVE-2024-30621 | Crítica (9.8) | 0.74% | — | 2 abr 2024 | Tenda AX1803 v1.0.0.1 contains a stack overflow via the serverName parameter in the function fromAdvSetMacMtuWan. |
| CVE-2024-30620 | Crítica (9.8) | 0.82% | — | 2 abr 2024 | Tenda AX1803 v1.0.0.1 contains a stack overflow via the serviceName parameter in the function fromAdvSetMacMtuWan. |
| CVE-2023-51970 | Crítica (9.8) | 0.73% | — | 10 ene 2024 | Tenda AX1803 v1.0.0.1 contains a stack overflow via the iptv.stb.mode parameter in the function formSetIptv. |
| CVE-2023-51969 | Crítica (9.8) | 0.73% | — | 10 ene 2024 | Tenda AX1803 v1.0.0.1 contains a stack overflow via the iptv.city.vlan parameter in the function getIptvInfo. |
| CVE-2023-51968 | Crítica (9.8) | 0.73% | — | 10 ene 2024 | Tenda AX1803 v1.0.0.1 contains a stack overflow via the adv.iptv.stballvlans parameter in the function getIptvInfo. |
| CVE-2023-51967 | Crítica (9.8) | 0.73% | — | 10 ene 2024 | Tenda AX1803 v1.0.0.1 contains a stack overflow via the iptv.stb.port parameter in the function getIptvInfo. |
| CVE-2023-51962 | Crítica (9.8) | 0.73% | — | 10 ene 2024 | Tenda AX1803 v1.0.0.1 contains a stack overflow via the iptv.stb.mode parameter in the function setIptvInfo. |
| CVE-2023-51965 | Crítica (9.8) | 0.70% | — | 10 ene 2024 | Tenda AX1803 v1.0.0.1 contains a stack overflow via the adv.iptv.stbpvid parameter in the function setIptvInfo. |
| CVE-2023-51964 | Crítica (9.8) | 0.70% | — | 10 ene 2024 | Tenda AX1803 v1.0.0.1 contains a stack overflow via the iptv.stb.port parameter in the function setIptvInfo. |
| CVE-2023-51963 | Crítica (9.8) | 0.87% | — | 10 ene 2024 | Tenda AX1803 v1.0.0.1 contains a stack overflow via the iptv.city.vlan parameter in the function setIptvInfo. |
| CVE-2023-51960 | Crítica (9.8) | 0.70% | — | 10 ene 2024 | Tenda AX1803 v1.0.0.1 contains a stack overflow via the iptv.city.vlan parameter in the function formGetIptv. |
| CVE-2023-51959 | Crítica (9.8) | 0.70% | — | 10 ene 2024 | Tenda AX1803 v1.0.0.1 contains a stack overflow via the adv.iptv.stbpvid parameter in the function formGetIptv. |
| CVE-2023-51958 | Crítica (9.8) | 0.70% | — | 10 ene 2024 | Tenda AX1803 v1.0.0.1 contains a stack overflow via the iptv.stb.port parameter in the function formGetIptv. |
| CVE-2023-51957 | Crítica (9.8) | 0.70% | — | 10 ene 2024 | Tenda AX1803 v1.0.0.1 contains a stack overflow via the iptv.stb.mode parameter in the function formGetIptv. |
| CVE-2023-51956 | Crítica (9.8) | 0.70% | — | 10 ene 2024 | Tenda AX1803 v1.0.0.1 contains a stack overflow via the iptv.city.vlan parameter in the function formSetIptv |
| CVE-2023-51955 | Crítica (9.8) | 0.46% | — | 10 ene 2024 | Tenda AX1803 v1.0.0.1 contains a stack overflow via the adv.iptv.stballvlans parameter in the function formSetIptv. |
| CVE-2023-51954 | Crítica (9.8) | 0.70% | — | 10 ene 2024 | Tenda AX1803 v1.0.0.1 contains a stack overflow via the iptv.stb.port parameter in the function formSetIptv. |
| CVE-2023-51953 | Crítica (9.8) | 0.70% | — | 10 ene 2024 | Tenda AX1803 v1.0.0.1 contains a stack overflow via the iptv.stb.mode parameter in the function formSetIptv. |
| CVE-2023-51952 | Crítica (9.8) | 0.70% | — | 10 ene 2024 | Tenda AX1803 v1.0.0.1 contains a stack overflow via the adv.iptv.stbpvid parameter in the function formSetIptv. |
| CVE-2023-51966 | Crítica (9.8) | 0.70% | — | 10 ene 2024 | Tenda AX1803 v1.0.0.1 contains a stack overflow via the adv.iptv.stballvlans parameter in the function setIptvInfo. |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.