CVE-2025-57215
- EPSS 0.06%
- Veröffentlicht 28.08.2025 00:00:00
- Zuletzt bearbeitet 03.09.2025 16:11:17
Tenda AC10 v4.0 firmware v16.03.10.20 was discovered to contain a stack overflow via the function get_parentControl_list_Info.
CVE-2025-57220
- EPSS 0.06%
- Veröffentlicht 28.08.2025 00:00:00
- Zuletzt bearbeitet 03.09.2025 16:11:06
An input validation flaw in the 'ate' service of Tenda AC10 v4.0 firmware v16.03.10.09_multi_TDE01 to escalate privileges to root via a crafted UDP packet.
- EPSS 0.02%
- Veröffentlicht 21.08.2025 16:32:08
- Zuletzt bearbeitet 25.08.2025 02:02:44
A vulnerability was found in Tenda AC10 16.03.10.13. Affected is an unknown function of the file /etc_ro/shadow of the component MD5 Hash Handler. Performing manipulation results in hard-coded credentials. The attack needs to be approached locally. A...
CVE-2025-8178
- EPSS 0.33%
- Veröffentlicht 26.07.2025 04:32:10
- Zuletzt bearbeitet 01.08.2025 20:02:24
A vulnerability classified as critical has been found in Tenda AC10 16.03.10.13. Affected is an unknown function of the file /goform/RequestsProcessLaid. The manipulation of the argument device1D leads to heap-based buffer overflow. It is possible to...
CVE-2025-5629
- EPSS 1.33%
- Veröffentlicht 05.06.2025 02:00:21
- Zuletzt bearbeitet 06.06.2025 15:15:34
A vulnerability, which was classified as critical, was found in Tenda AC10 up to 15.03.06.47. This affects the function formSetPPTPServer of the file /goform/SetPptpServerCfg of the component HTTP Handler. The manipulation of the argument startIp/end...
CVE-2025-4896
- EPSS 0.75%
- Veröffentlicht 18.05.2025 21:00:08
- Zuletzt bearbeitet 27.05.2025 16:30:13
A vulnerability was found in Tenda AC10 16.03.10.13 and classified as critical. Affected by this issue is some unknown functionality of the file /goform/UserCongratulationsExec. The manipulation of the argument getuid leads to buffer overflow. The at...
CVE-2025-44175
- EPSS 0.22%
- Veröffentlicht 12.05.2025 00:00:00
- Zuletzt bearbeitet 13.06.2025 13:39:01
Tenda AC10 v4 V16.03.10.13 is vulnerable to Buffer Overflow in the GetParentControlInfo function.
CVE-2025-45779
- EPSS 0.86%
- Veröffentlicht 12.05.2025 00:00:00
- Zuletzt bearbeitet 13.06.2025 13:40:52
Tenda AC10 V1.0re_V15.03.06.46 is vulnerable to Buffer Overflow in the formSetPPTPUserList handler via the list POST parameter.
CVE-2025-25455
- EPSS 0.4%
- Veröffentlicht 17.04.2025 00:00:00
- Zuletzt bearbeitet 22.04.2025 16:41:14
Tenda AC10 V4.0si_V16.03.10.20 is vulnerable to Buffer Overflow in AdvSetMacMtuWan via wanMTU2.
CVE-2025-25454
- EPSS 0.4%
- Veröffentlicht 17.04.2025 00:00:00
- Zuletzt bearbeitet 22.04.2025 16:41:20
Tenda AC10 V4.0si_V16.03.10.20 is vulnerable to Buffer Overflow in AdvSetMacMtuWan via wanSpeed2.