Tenda Ac6 Firmware 15.03.05.16

CPE Details

Tenda Ac6 Firmware 15.03.05.16
15.03.05.16
2023-12-29
17h02 +00:00
2023-12-29
17h02 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:o:tenda:ac6_firmware:15.03.05.16:*:*:*:*:*:*:*

Informations

Vendor

tenda

Product

ac6_firmware

Version

15.03.05.16

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2025-50528 2025-06-27 00h00 +00:00 A buffer overflow vulnerability exists in the fromNatStaticSetting function of Tenda AC6 <=V15.03.05.19 via the page parameter.
7.3
Haute
CVE-2025-46035 2025-06-12 00h00 +00:00 Buffer Overflow vulnerability in Tenda AC6 v.15.03.05.16 allows a remote attacker to cause a denial of service via the oversized schedStartTime and schedEndTime parameters in an unauthenticated HTTP GET request to the /goform/openSchedWifi endpoint
7.5
Haute
CVE-2025-5855 2025-06-09 01h31 +00:00 A vulnerability, which was classified as critical, was found in Tenda AC6 15.03.05.16. This affects the function formSetRebootTimer of the file /goform/SetRebootTimer. The manipulation of the argument rebootTime leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
8.7
Haute
CVE-2025-5854 2025-06-09 01h00 +00:00 A vulnerability, which was classified as critical, has been found in Tenda AC6 15.03.05.16. Affected by this issue is the function fromadvsetlanip of the file /goform/AdvSetLanip. The manipulation of the argument lanMask leads to buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
8.7
Haute
CVE-2025-5853 2025-06-09 00h31 +00:00 A vulnerability classified as critical was found in Tenda AC6 15.03.05.16. Affected by this vulnerability is the function formSetSafeWanWebMan of the file /goform/SetRemoteWebCfg. The manipulation of the argument remoteIp leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
8.7
Haute
CVE-2025-5852 2025-06-09 00h00 +00:00 A vulnerability classified as critical has been found in Tenda AC6 15.03.05.16. Affected is the function formSetPPTPUserList of the file /goform/setPptpUserList. The manipulation of the argument list leads to buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
8.7
Haute
CVE-2025-44172 2025-06-02 00h00 +00:00 Tenda AC6 V15.03.05.16 was discovered to contain a stack overflow via the time parameter in the setSmartPowerManagement function.
6.5
Moyen
CVE-2025-29121 2025-03-20 00h00 +00:00 A vulnerability was found in Tenda AC6 V15.03.05.16. The vulnerability affects the functionality of the /goform/fast_setting_wifi_set file form_fast_setting_wifi_set. Using the timeZone parameter causes a stack-based buffer overflow.
7.5
Haute
CVE-2025-29029 2025-03-14 00h00 +00:00 Tenda AC6 v15.03.05.16 was discovered to contain a buffer overflow via the formSetSpeedWan function.
9.8
Critique
CVE-2025-29030 2025-03-14 00h00 +00:00 Tenda AC6 v15.03.05.16 was discovered to contain a buffer overflow via the formWifiWpsOOB function.
9.8
Critique
CVE-2025-29031 2025-03-14 00h00 +00:00 Tenda AC6 v15.03.05.16 was discovered to contain a buffer overflow via the fromAddressNat function.
9.8
Critique
CVE-2025-25343 2025-02-12 00h00 +00:00 Tenda AC6 V15.03.05.16 firmware has a buffer overflow vulnerability in the formexeCommand function.
9.8
Critique
CVE-2025-0349 2025-01-09 10h31 +00:00 A vulnerability classified as critical has been found in Tenda AC6 15.03.05.16. Affected is the function GetParentControlInfo of the file /goform/GetParentControlInfo. The manipulation of the argument src/mac leads to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well.
8.7
Haute
CVE-2024-52275 2024-12-04 10h20 +00:00 Stack-based Buffer Overflow vulnerability in Shenzhen Tenda Technology Co Tenda AC6V2 (fromWizardHandle modules) allows Overflow Buffers.This issue affects Tenda AC6V2: through 15.03.06.50.
8.3
Haute
CVE-2024-52274 2024-12-04 10h19 +00:00 Stack-based Buffer Overflow vulnerability in Shenzhen Tenda Technology Co Tenda AC6V2 (setDoubleL2tpConfig->guest_ip_check(overflow arg: mask) modules) allows Overflow Buffers.This issue affects Tenda AC6V2: through 15.03.06.50
8.3
Haute
CVE-2024-52273 2024-12-04 10h19 +00:00 Stack-based Buffer Overflow vulnerability in Shenzhen Tenda Technology Co Tenda AC6V2 (setDoublePppoeConfig->guest_ip_check(overflow arg: mask) modules) allows Overflow Buffers.This issue affects Tenda AC6V2: through 15.03.06.50
8.3
Haute
CVE-2024-52272 2024-12-04 10h18 +00:00 Stack-based Buffer Overflow vulnerability in Shenzhen Tenda Technology Co Tenda AC6V2 (fromAdvSetLanip(overflow arg:lanMask) modules) allows Overflow Buffers.This issue affects Tenda AC6V2: through 15.03.06.50
8.3
Haute
CVE-2023-40837 2023-08-29 22h00 +00:00 Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin function 'sub_ADD50' contains a command execution vulnerability. In the "formSetIptv" function, obtaining the "list" and "vlanId" fields, unfiltered passing these two fields as parameters to the "sub_ADD50" function to execute commands.
9.8
Critique
CVE-2023-40838 2023-08-29 22h00 +00:00 Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin function 'sub_3A1D0' contains a command execution vulnerability.
9.8
Critique
CVE-2023-40839 2023-08-29 22h00 +00:00 Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin function 'sub_ADF3C' contains a command execution vulnerability. In the "formSetIptv" function, obtaining the "list" and "vlanId" fields, unfiltered passing these two fields as parameters to the "sub_ADF3C" function to execute commands.
9.8
Critique
CVE-2023-40840 2023-08-29 22h00 +00:00 Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin is vulnerable to Buffer Overflow via function "fromGetWirelessRepeat."
9.8
Critique
CVE-2023-40841 2023-08-29 22h00 +00:00 Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin is vulnerable to Buffer Overflow via function "add_white_node,"
9.8
Critique
CVE-2023-40842 2023-08-29 22h00 +00:00 Tengda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin is vulnerable to Buffer Overflow via function "R7WebsSecurityHandler."
9.8
Critique
CVE-2023-40843 2023-08-29 22h00 +00:00 Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin is vulnerable to Buffer Overflow via function "sub_73004."
9.8
Critique
CVE-2023-40844 2023-08-29 22h00 +00:00 Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin is vulnerable to Buffer Overflow via function 'formWifiBasicSet.'
9.8
Critique
CVE-2023-40845 2023-08-29 22h00 +00:00 Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin is vulnerable to Buffer Overflow via function 'sub_34FD0.' In the function, it reads user provided parameters and passes variables to the function without any length checks.
9.8
Critique
CVE-2023-40847 2023-08-29 22h00 +00:00 Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin is vulnerable to Buffer Overflow via the function "initIpAddrInfo." In the function, it reads in a user-provided parameter, and the variable is passed to the function without any length check.
9.8
Critique
CVE-2023-40848 2023-08-29 22h00 +00:00 Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin is vulnerable to Buffer Overflow via the function "sub_7D858."
9.8
Critique
CVE-2023-40846 2023-08-27 22h00 +00:00 Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin is vulnerable to Buffer Overflow via function sub_90998.
9.8
Critique
CVE-2023-39670 2023-08-17 22h00 +00:00 Tenda AC6 _US_AC6V1.0BR_V15.03.05.16 was discovered to contain a buffer overflow via the function fgets.
9.8
Critique