Vulnerabilities > Tenda > AC6 Firmware > Critical
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2025-03-14 | CVE-2025-29031 | Out-of-bounds Write vulnerability in Tenda AC6 Firmware 15.03.05.16 Tenda AC6 v15.03.05.16 was discovered to contain a buffer overflow via the fromAddressNat function. | 9.8 |
2025-03-14 | CVE-2025-29030 | Out-of-bounds Write vulnerability in Tenda AC6 Firmware 15.03.05.16 Tenda AC6 v15.03.05.16 was discovered to contain a buffer overflow via the formWifiWpsOOB function. | 9.8 |
2025-03-14 | CVE-2025-29029 | Out-of-bounds Write vulnerability in Tenda AC6 Firmware 15.03.05.16 Tenda AC6 v15.03.05.16 was discovered to contain a buffer overflow via the formSetSpeedWan function. | 9.8 |
2025-03-02 | CVE-2025-1814 | Stack-based Buffer Overflow vulnerability in Tenda AC6 Firmware 15.03.05.16 A vulnerability, which was classified as critical, has been found in Tenda AC6 15.03.05.16. | 9.8 |
2025-02-12 | CVE-2025-25343 | Classic Buffer Overflow vulnerability in Tenda AC6 Firmware 15.03.05.16 Tenda AC6 V15.03.05.16 firmware has a buffer overflow vulnerability in the formexeCommand function. | 9.8 |
2025-01-09 | CVE-2025-0349 | Unspecified vulnerability in Tenda AC6 Firmware 15.03.05.16 A vulnerability classified as critical has been found in Tenda AC6 15.03.05.16. | 9.8 |
2024-11-19 | CVE-2024-52714 | Classic Buffer Overflow vulnerability in Tenda AC6 Firmware 15.03.06.50Multi Tenda AC6 v2.0 v15.03.06.50 was discovered to contain a buffer overflow in the function 'fromSetSysTime. | 9.8 |
2024-11-02 | CVE-2024-10698 | Out-of-bounds Write vulnerability in Tenda AC6 Firmware 15.03.05.19 A vulnerability was found in Tenda AC6 15.03.05.19 and classified as critical. | 9.8 |
2024-11-02 | CVE-2024-10697 | Injection vulnerability in Tenda AC6 Firmware 15.03.05.19 A vulnerability has been found in Tenda AC6 15.03.05.19 and classified as critical. | 9.8 |
2023-11-20 | CVE-2023-38823 | Classic Buffer Overflow vulnerability in Tenda products Buffer Overflow vulnerability in Tenda Ac19 v.1.0, AC18, AC9 v.1.0, AC6 v.2.0 and v.1.0 allows a remote attacker to execute arbitrary code via the formSetCfm function in bin/httpd. | 9.8 |