Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
tendacn ac10 firmware vulnerabilities and exploits
(subscribe to this query)
5
CVSSv2
CVE-2018-14492
Tenda AC7 through V15.03.06.44_CN, AC9 through V15.03.05.19(6318)_CN, and AC10 through V15.03.06.23_CN devices have a Stack-based Buffer Overflow via a long limitSpeed or limitSpeedup parameter to an unspecified /goform URI.
Tendacn Ac7 Firmware
Tendacn Ac9 Firmware
Tendacn Ac10 Firmware
Tendacn Ac15 Firmware
Tendacn Ac18 Firmware
9
CVSSv2
CVE-2018-16334
An issue exists on Tenda AC9 V15.03.05.19(6318)_CN and AC10 V15.03.06.23_CN devices. The mac parameter in a POST request is used directly in a doSystemCmd call, causing OS command injection.
Tendacn Ac10 Firmware
Tendacn Ac9 Firmware 15.03.05.19
7.8
CVSSv2
CVE-2018-16333
An issue exists on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05.19(6318)_CN devices. There is a buffer overflow vulnerability in the router's web server. While processing the ssid parameter for a POST re...
Tendacn Ac18 Firmware
Tendacn Ac15 Firmware 15.03.05.19
Tendacn Ac10 Firmware 15.03.06.23
Tendacn Ac9 Firmware 15.03.05.19
Tendacn Ac7 Firmware 15.03.06.44
1 Github repository
NA
CVE-2023-37144
Tenda AC10 v15.03.06.26 exists to contain a command injection vulnerability via the mac parameter in the function formWriteFacMac.
Tendacn Ac10 Firmware 15.03.06.26
7.8
CVSSv2
CVE-2022-26243
Tenda AC10-1200 v15.03.06.23_EN exists to contain a buffer overflow in the setSmartPowerManagement function.
Tendacn Ac10 Firmware 15.03.06.23
7.8
CVSSv2
CVE-2021-38772
Tenda AC10-1200 v15.03.06.23_EN exists to contain a buffer overflow via the list parameter in the fromSetIpMacBind function.
Tendacn Ac10 Firmware 15.03.06.23
7.5
CVSSv2
CVE-2021-38278
Tenda AC10-1200 v15.03.06.23_EN exists to contain a buffer overflow via the urls parameter in the saveParentControlInfo function.
Tendacn Ac10 Firmware 15.03.06.23
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
SSRF
server-side request forgery
CVE-2024-30067
CVE-2024-5553
CVE-2024-30095
IDOR
CVE-2024-35252
CVE-2024-23692
CVE-2024-27801
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started