Tenda

Ac10

30 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.9%
  • Veröffentlicht 16.08.2026 01:00:13
  • Zuletzt bearbeitet 20.08.2026 12:48:10

A security vulnerability has been detected in Tenda AC10 16.03.10.09_multi_TDE01. This vulnerability affects the function R7WebsSecurityHandler of the component httpd. The manipulation leads to improper authentication. The attack may be initiated rem...

Exploit
  • EPSS 0.47%
  • Veröffentlicht 20.07.2026 12:45:10
  • Zuletzt bearbeitet 20.07.2026 15:16:36

A vulnerability was found in Tenda AC10 16.03.10.09_multi_TDE01. This issue affects the function fromAdvSetLanip of the file /goform/AdvSetLanip of the component httpd/netctrl. The manipulation of the argument GetValue/SetValue results in stack-based...

  • EPSS 0.41%
  • Veröffentlicht 15.07.2026 00:00:00
  • Zuletzt bearbeitet 16.07.2026 16:19:12

Buffer Overflow vulnerability in Tenda AC10 v3 (firmware V03.03.16.09) allows attackers to cause a permanent Denial of Service (DoS) or potentially execute remote code via the /cgi-bin/UploadCfg endpoint

  • EPSS 0.52%
  • Veröffentlicht 05.04.2026 08:00:20
  • Zuletzt bearbeitet 24.07.2026 20:10:00

A vulnerability was identified in Tenda AC10 16.03.10.10_multi_TDE01. This affects the function fromSysToolChangePwd of the file /bin/httpd. The manipulation leads to stack-based buffer overflow. The attack may be initiated remotely. Multiple endpoin...

Exploit
  • EPSS 0.4%
  • Veröffentlicht 05.04.2026 07:45:14
  • Zuletzt bearbeitet 24.07.2026 20:10:00

A vulnerability was determined in Tenda AC10 16.03.10.10_multi_TDE01. Affected by this issue is some unknown functionality of the file /webroot_ro/pem/privkeySrv.pem of the component RSA 2048-bit Private Key Handler. Executing a manipulation can lead...

  • EPSS 0.57%
  • Veröffentlicht 05.04.2026 07:30:15
  • Zuletzt bearbeitet 24.07.2026 20:10:00

A vulnerability was found in Tenda AC10 16.03.10.10_multi_TDE01. Affected by this vulnerability is the function fromSysToolChangePwd of the file /bin/httpd. Performing a manipulation of the argument sys.userpass results in stack-based buffer overflow...

  • EPSS 1.91%
  • Veröffentlicht 05.04.2026 07:15:15
  • Zuletzt bearbeitet 24.07.2026 20:10:00

A vulnerability has been found in Tenda AC10 16.03.10.10_multi_TDE01. Affected is the function formAddMacfilterRule of the file /bin/httpd. Such manipulation leads to os command injection. It is possible to launch the attack remotely. Multiple endpoi...

Exploit
  • EPSS 0.68%
  • Veröffentlicht 17.12.2025 00:00:00
  • Zuletzt bearbeitet 02.01.2026 19:45:45

A Buffer overflow vulnerability in function fromAdvSetMacMtuWan of bin httpd in Tenda AC10V4.0 V16.03.10.20 allows remote attackers to cause denial of service and possibly code execution by sending a post request with a crafted payload (field `servic...

Exploit
  • EPSS 0.83%
  • Veröffentlicht 03.11.2025 07:32:13
  • Zuletzt bearbeitet 05.11.2025 14:34:51

A vulnerability was determined in Tenda AC10 16.03.10.13. Affected by this vulnerability is the function formSysRunCmd of the file /goform/SysRunCmd. This manipulation of the argument getui causes buffer overflow. The attack may be initiated remotely...

  • EPSS 0.8%
  • Veröffentlicht 28.08.2025 00:00:00
  • Zuletzt bearbeitet 03.09.2025 16:11:06

An input validation flaw in the 'ate' service of Tenda AC10 v4.0 firmware v16.03.10.09_multi_TDE01 to escalate privileges to root via a crafted UDP packet.