📦

ac9

Vendor: tenda

Actively Exploited 1 CISA KEV List
PoC / Exploits 2 Code Available
Total RCEs 48 Remote Access
Total CVEs 151 Total Indexed
Avg. EPSS 2.71% Exploit Prob.
Latest CVE CVE-2026-6016 Apr 10

Security Vulnerability Index

Page 6 / 16
9.8 CVSS

Tenda F1202 V1.0BR_V1.2.0.20(408) and FH1202_V1.2.0.19_EN, AC10 V1.0, AC1206 V1.0, AC7 V1.0, AC5 V1.0, and AC9 V3.0 were discovered to contain a stack overflow in the page parameter in the function fromDhcpListClient.

EPSS: 0.17%
9.8 CVSS

Tenda F1202 V1.0BR_V1.2.0.20(408) and FH1202_V1.2.0.19_EN, AC10 V1.0, AC1206 V1.0, AC7 V1.0, AC5 V1.0, and AC9 V3.0 were discovered to contain a stack overflow in the page parameter in the function fromNatStaticSetting.

EPSS: 0.17%
7.2 CVSS

Tenda AC9 V15.03.05.19 was discovered to contain a stack overflow via the mask parameter at /goform/WanParameterSetting.

EPSS: 0.48%
7.2 CVSS

Tenda AC9 V15.03.05.19 was discovered to contain a stack overflow via the time parameter at /goform/SetLEDCfg.

EPSS: 0.48%
8.8 CVSS

Tenda AC9 V15.03.05.19 was discovered to contain a stack overflow via the deviceList parameter at /goform/setMacFilterCfg.

EPSS: 0.45%
8.8 CVSS

Tenda AC9 V15.03.05.19 was discovered to contain a stack overflow via the list parameter at /goform/setPptpUserList.

EPSS: 0.45%
5.5 CVSS

Tenda AC9 V15.03.2.13 is vulnerable to Buffer Overflow via httpd, form_fast_setting_wifi_set. httpd.

EPSS: 0.06%
9.8 CVSS

Tenda AC9 V15.03.2.21_cn is vulnerable to command injection via goform/SetSysTimeCfg.

EPSS: 17.86%
6.5 CVSS

There is a buffer overflow vulnerability in the Web server httpd of the router in Tenda router devices such as Tenda AC9 V1.0 V15.03.02.19(6318) and Tenda AC9 V3.0 V15.03.06.42_multi. When setting the virtual service, the httpd program will crash and exit when the super-long list parameter occurs.

EPSS: 0.21%
9.8 CVSS

There is a stack overflow vulnerability in the goform/fast_setting_wifi_set function in the httpd service of Tenda ac9 15.03.2.21_cn router. An attacker can obtain a stable shell through a carefully constructed payload

EPSS: 0.42%