Home/Product/tenda ac23 firmware
Product

tenda ac23 firmware

27 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2026-1420
all versions
A flaw has been found in Tenda AC23 16.03.07.52. This impacts an unknown function of the file /goform/WifiExtraSet. This manipulat
8.8HIGH
CVE-2026-0640
all versions
A weakness has been identified in Tenda AC23 16.03.07.52. This affects the function sscanf of the file /goform/PowerSaveSet. Execu
8.8HIGH
CVE-2025-15217
all versions
A security flaw has been discovered in Tenda AC23 16.03.07.52. Affected is the function formSetPPTPUserList of the component HTTP
8.8HIGH
CVE-2025-15216
all versions
A vulnerability was identified in Tenda AC23 16.03.07.52. This impacts the function fromSetIpMacBind of the file /goform/SetIpMacB
8.8HIGH
CVE-2025-12596
all versions
A security vulnerability has been detected in Tenda AC23 16.03.07.52. Affected is the function saveParentControlInfo of the file /
8.8HIGH
CVE-2025-12595
all versions
A weakness has been identified in Tenda AC23 16.03.07.52. This impacts the function formSetVirtualSer of the file /goform/SetVirtu
8.8HIGH
CVE-2025-11356
all versions
A vulnerability was found in Tenda AC23 up to 16.03.07.52. Affected by this issue is the function sscanf of the file /goform/SetSt
8.8HIGH
CVE-2025-10803
<= 16.03.07.52
A vulnerability has been found in Tenda AC23 up to 16.03.07.52. Affected by this vulnerability is the function sscanf of the file
8.8HIGH
CVE-2025-9605
all versions
A security vulnerability has been detected in Tenda AC21 and AC23 16.03.08.16. Affected is the function GetParentControlInfo of th
9.8CRITICAL
CVE-2025-8060
all versions
A vulnerability has been found in Tenda AC23 16.03.07.52 and classified as critical. Affected by this vulnerability is the functio
8.8HIGH
CVE-2025-3167
all versions
A vulnerability, which was classified as problematic, has been found in Tenda AC23 16.03.07.52. This issue affects some unknown pr
6.5MEDIUM
CVE-2023-24334
all versions
A stack overflow vulnerability in Tenda AC23 with firmware version US_AC23V1.0re_V16.03.07.45_cn_TDC01 allows attackers to run arb
8.0HIGH
CVE-2023-40798
all versions
In Tenda AC23 v16.03.07.45_cn, the formSetIPv6status and formGetWanParameter functions do not authenticate user input parameters,
8.8HIGH
CVE-2023-40797
all versions
In Tenda AC23 v16.03.07.45_cn, the sub_4781A4 function does not validate the parameters entered by the user, resulting in a post-a
8.8HIGH
CVE-2023-40802
all versions
The get_parentControl_list_Info function does not verify the parameters entered by the user, causing a post-authentication heap ov
6.5MEDIUM
CVE-2023-40800
all versions
The compare_parentcontrol_time function does not authenticate user input parameters, resulting in a post-authentication stack over
8.8HIGH
CVE-2023-40799
all versions
Tenda AC23 Vv16.03.07.45_cn is vulnerable to Buffer Overflow via sub_450A4C function.
9.8CRITICAL
CVE-2023-2649
all versions
A vulnerability was found in Tenda AC23 16.03.07.45_cn. It has been declared as critical. This vulnerability affects unknown code
7.2HIGH
CVE-2023-0782
all versions
A vulnerability was found in Tenda AC23 16.03.07.45 and classified as critical. Affected by this issue is the function formSetSysT
7.2HIGH
CVE-2022-43108
all versions
Tenda AC23 V16.03.07.45_cn was discovered to contain a stack overflow via the firewallEn parameter in the formSetFirewallCfg funct
9.8CRITICAL
CVE-2022-43107
all versions
Tenda AC23 V16.03.07.45_cn was discovered to contain a stack overflow via the time parameter in the setSmartPowerManagement functi
9.8CRITICAL
CVE-2022-43106
all versions
Tenda AC23 V16.03.07.45_cn was discovered to contain a stack overflow via the schedStartTime parameter in the setSchedWifi functio
9.8CRITICAL
CVE-2022-43105
all versions
Tenda AC23 V16.03.07.45_cn was discovered to contain a stack overflow via the shareSpeed parameter in the fromSetWifiGusetBasic fu
9.8CRITICAL
CVE-2022-43104
all versions
Tenda AC23 V16.03.07.45_cn was discovered to contain a stack overflow via the wpapsk_crypto parameter in the fromSetWirelessRepeat
9.8CRITICAL
CVE-2022-43103
all versions
Tenda AC23 V16.03.07.45_cn was discovered to contain a stack overflow via the list parameter in the formSetQosBand function.
9.8CRITICAL
CVE-2022-43102
all versions
Tenda AC23 V16.03.07.45_cn was discovered to contain a stack overflow via the timeZone parameter in the fromSetSysTime function.
9.8CRITICAL
CVE-2022-43101
all versions
Tenda AC23 V16.03.07.45_cn was discovered to contain a stack overflow via the devName parameter in the formSetDeviceName function.
9.8CRITICAL
threatengine.sh