CVE-2025-15356
- EPSS 0.12%
- Veröffentlicht 30.12.2025 20:32:08
- Zuletzt bearbeitet 31.12.2025 22:09:38
A vulnerability has been found in Tenda AC20 up to 16.03.08.12. The impacted element is the function sscanf of the file /goform/PowerSaveSet. The manipulation of the argument powerSavingEn/time/powerSaveDelay/ledCloseType leads to buffer overflow. Th...
- EPSS 0.11%
- Veröffentlicht 14.12.2025 11:15:40
- Zuletzt bearbeitet 24.02.2026 06:16:24
A weakness has been identified in Tenda AC20 16.03.08.12. This affects the function httpd of the file /goform/openSchedWifi. Executing a manipulation of the argument schedStartTime/schedEndTime can lead to buffer overflow. The attack may be performed...
- EPSS 0.15%
- Veröffentlicht 14.12.2025 10:32:08
- Zuletzt bearbeitet 24.02.2026 06:16:24
A security flaw has been discovered in Tenda AC20 16.03.08.12. The impacted element is the function formSetRebootTimer of the file /goform/SetSysAutoRebbotCfg of the component httpd. Performing a manipulation of the argument rebootTime results in sta...
CVE-2025-14654
- EPSS 0.11%
- Veröffentlicht 14.12.2025 10:02:08
- Zuletzt bearbeitet 19.12.2025 14:21:06
A vulnerability was identified in Tenda AC20 16.03.08.12. The affected element is the function formSetPPTPUserList of the file /goform/setPptpUserList of the component httpd. Such manipulation of the argument list leads to stack-based buffer overflow...
CVE-2025-13258
- EPSS 0.11%
- Veröffentlicht 17.11.2025 02:02:08
- Zuletzt bearbeitet 19.11.2025 13:15:56
A vulnerability was detected in Tenda AC20 up to 16.03.08.12. The impacted element is an unknown function of the file /goform/WifiExtraSet. The manipulation of the argument wpapsk_crypto results in buffer overflow. The attack can be launched remotely...
CVE-2025-11385
- EPSS 0.15%
- Veröffentlicht 07.10.2025 09:32:06
- Zuletzt bearbeitet 09.10.2025 16:46:19
A vulnerability has been found in Tenda AC20 up to 16.03.08.12. The affected element is the function sscanf of the file /goform/fast_setting_wifi_set. The manipulation of the argument timeZone leads to buffer overflow. The attack can be initiated rem...
- EPSS 0.37%
- Veröffentlicht 09.09.2025 01:32:12
- Zuletzt bearbeitet 10.09.2025 16:41:54
A vulnerability was detected in Tenda AC20 up to 16.03.08.12. The impacted element is the function strcpy of the file /goform/GetParentControlInfo. The manipulation of the argument mac results in buffer overflow. The attack may be performed from remo...
CVE-2025-9791
- EPSS 0.37%
- Veröffentlicht 01.09.2025 19:15:32
- Zuletzt bearbeitet 04.09.2025 16:20:55
A weakness has been identified in Tenda AC20 16.03.08.05. This vulnerability affects unknown code of the file /goform/fromAdvSetMacMtuWan. This manipulation of the argument wanMTU causes stack-based buffer overflow. Remote exploitation of the attack ...
CVE-2025-9091
- EPSS 0.02%
- Veröffentlicht 17.08.2025 02:32:09
- Zuletzt bearbeitet 21.08.2025 16:10:43
A security flaw has been discovered in Tenda AC20 16.03.08.12. Affected by this vulnerability is an unknown functionality of the file /etc_ro/shadow. The manipulation leads to hard-coded credentials. It is possible to launch the attack on the local h...
CVE-2025-9090
- EPSS 1.87%
- Veröffentlicht 17.08.2025 02:02:07
- Zuletzt bearbeitet 21.08.2025 16:10:48
A vulnerability was identified in Tenda AC20 16.03.08.12. Affected is the function websFormDefine of the file /goform/telnet of the component Telnet Service. The manipulation leads to command injection. It is possible to launch the attack remotely. T...