Home/Product/tenda ax1806 firmware
Product

tenda ax1806 firmware

61 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-70644
all versions
Tenda AX-1806 v1.0.0.1 was discovered to contain a stack overflow in the time parameter of the sub_60CFC function. This vulnerabil
7.5HIGH
CVE-2025-70650
all versions
Tenda AX-1806 v1.0.0.1 was discovered to contain a stack overflow in the deviceList parameter of the formSetMacFilterCfg function.
7.5HIGH
CVE-2025-70645
all versions
Tenda AX-1806 v1.0.0.1 was discovered to contain a stack overflow in the deviceList parameter of the formSetWifiMacFilterCfg funct
7.5HIGH
CVE-2025-71020
all versions
Tenda AX-1806 v1.0.0.1 was discovered to contain a stack overflow in the security parameter of the sub_4C408 function. This vulner
7.5HIGH
CVE-2025-70746
all versions
Tenda AX-1806 v1.0.0.1 was discovered to contain a stack overflow in the timeZone parameter of the fromSetSysTime function. This v
7.5HIGH
CVE-2025-70656
all versions
Tenda AX-1806 v1.0.0.1 was discovered to contain a stack overflow in the mac parameter of the sub_65B5C function. This vulnerabili
7.5HIGH
CVE-2025-71019
all versions
Tenda AX-1806 v1.0.0.1 was discovered to contain a stack overflow in the wanSpeed parameter of the sub_65B5C function. This vulner
7.5HIGH
CVE-2025-70744
all versions
Tenda AX-1806 v1.0.0.1 was discovered to contain a stack overflow in the cloneType parameter of the sub_65B5C function. This vulne
7.5HIGH
CVE-2025-71021
all versions
Tenda AX-1806 v1.0.0.1 was discovered to contain a stack overflow in the serverName parameter of the sub_65A28 function. This vuln
7.5HIGH
CVE-2025-70747
all versions
Tenda AX-1806 v1.0.0.1 was discovered to contain a stack overflow in the serviceName parameter of the sub_65A28 function. This vul
7.5HIGH
CVE-2025-70753
all versions
Tenda AX-1806 v1.0.0.1 was discovered to contain a stack overflow in the security_5g parameter of the sub_4CA50 function. This vul
7.5HIGH
CVE-2024-44557
all versions
Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.stb.mode parameter in the function setIptvInfo.
9.8CRITICAL
CVE-2024-44555
all versions
Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.city.vlan parameter in the function setIptvInfo.
9.8CRITICAL
CVE-2024-44553
all versions
Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.stb.mode parameter in the function formGetIptv.
9.8CRITICAL
CVE-2024-44552
all versions
Tenda AX1806 v1.0.0.1 contains a stack overflow via the adv.iptv.stballvlans parameter in the function formGetIptv.
9.8CRITICAL
CVE-2024-44551
all versions
Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.city.vlan parameter in the function formGetIptv.
9.8CRITICAL
CVE-2024-44550
all versions
Tenda AX1806 v1.0.0.1 contains a stack overflow via the adv.iptv.stbpvid parameter in the function formGetIptv.
9.8CRITICAL
CVE-2024-44549
all versions
Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.stb.port parameter in the function formGetIptv.
9.8CRITICAL
CVE-2024-44558
all versions
Tenda AX1806 v1.0.0.1 contains a stack overflow via the adv.iptv.stbpvid parameter in the function setIptvInfo.
9.8CRITICAL
CVE-2024-44556
all versions
Tenda AX1806 v1.0.0.1 contains a stack overflow via the adv.iptv.stballvlans parameter in the function setIptvInfo.
9.8CRITICAL
CVE-2024-44565
all versions
Tenda AX1806 v1.0.0.1 contains a stack overflow via the serverName parameter in the function form_fast_setting_internet_set.
9.8CRITICAL
CVE-2024-44563
all versions
Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.stb.port parameter in the function setIptvInfo.
9.8CRITICAL
CVE-2024-41492
all versions
A stack overflow in Tenda AX1806 v1.0.0.1 allows attackers to cause a Denial of Service (DoS) via a crafted input.
7.5HIGH
CVE-2024-40416
all versions
A vulnerability in /goform/SetVirtualServerCfg in the sub_6320C function in Tenda AX1806 1.0.0.1 firmware leads to stack-based buf
9.8CRITICAL
CVE-2024-40415
all versions
A vulnerability in /goform/SetStaticRouteCfg in the sub_519F4 function in Tenda AX1806 1.0.0.1 firmware leads to stack-based buffe
9.8CRITICAL
CVE-2024-40414
all versions
A vulnerability in /goform/SetNetControlList in the sub_656BC function in Tenda AX1806 1.0.0.1 firmware leads to stack-based buffe
9.8CRITICAL
CVE-2024-40417
all versions
A vulnerability was found in Tenda AX1806 1.0.0.1. Affected by this issue is the function formSetRebootTimer of the file /goform/S
6.5MEDIUM
CVE-2024-35580
all versions
Tenda AX1806 v1.0.0.1 contains a stack overflow via the adv.iptv.stbpvid parameter in the function formSetIptv.
9.8CRITICAL
CVE-2024-35579
all versions
Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.city.vlan parameter in the function formSetIptv.
7.7HIGH
CVE-2024-35578
all versions
Tenda AX1806 v1.0.0.1 contains a stack overflow via the adv.iptv.stballvlans parameter in the function formSetIptv.
8.0HIGH
CVE-2024-35576
all versions
Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.stb.port parameter in the function formSetIptv.
5.2MEDIUM
CVE-2024-35571
all versions
Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.stb.mode parameter in the function formSetIptv.
9.8CRITICAL
CVE-2024-4239
all versions
A vulnerability was found in Tenda AX1806 1.0.0.1 and classified as critical. Affected by this issue is the function formSetReboot
8.8HIGH
CVE-2024-4238
all versions
A vulnerability has been found in Tenda AX1806 1.0.0.1 and classified as critical. Affected by this vulnerability is the function
8.8HIGH
CVE-2024-4237
all versions
A vulnerability, which was classified as critical, was found in Tenda AX1806 1.0.0.1. Affected is the function R7WebsSecurityHandl
8.8HIGH
CVE-2023-47456
all versions
Tenda AX1806 V1.0.0.1 contains a stack overflow vulnerability in function sub_455D4, called by function fromSetWirelessRepeat.
9.1CRITICAL
CVE-2023-47455
all versions
Tenda AX1806 V1.0.0.1 contains a heap overflow vulnerability in setSchedWifi function, in which the src and v12 are directly obtai
9.1CRITICAL
CVE-2022-34597
all versions
Tenda AX1806 v1.0.0.1 was discovered to contain a command injection vulnerability via the function WanParameterSetting.
9.8CRITICAL
CVE-2022-32033
all versions
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the function formSetVirtualSer.
7.5HIGH
CVE-2022-32032
all versions
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the deviceList parameter in the function formAddMacfilterRule
9.8CRITICAL
CVE-2022-32031
all versions
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the list parameter in the function fromSetRouteStatic.
7.5HIGH
CVE-2022-32030
all versions
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the list parameter in the function formSetQosBand.
7.5HIGH
CVE-2022-28973
all versions
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the wanMTU parameter in the function fromAdvSetMacMtuWan. Thi
7.5HIGH
CVE-2022-28972
all versions
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the timeZone parameter in the function form_fast_setting_wifi
7.5HIGH
CVE-2022-28971
all versions
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the list parameter in the function fromSetIpMacBind. This vul
7.5HIGH
CVE-2022-28970
all versions
Tenda AX1806 v1.0.0.1 was discovered to contain a heap overflow via the mac parameter in the function GetParentControlInfo. This v
7.5HIGH
CVE-2022-28969
all versions
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the shareSpeed parameter in the function fromSetWifiGusetBasi
7.5HIGH
CVE-2022-28572
all versions
Tenda AX1806 v1.0.0.1 was discovered to contain a command injection vulnerability in SetIPv6Status function
8.8HIGH
CVE-2022-25566
all versions
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function saveParentControlInfo. This vulnerability allows
7.5HIGH
CVE-2022-25558
all versions
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function formSetProvince. This vulnerability allows attack
7.5HIGH
CVE-2022-25557
all versions
Tenda AX1806 v1.0.0.1 was discovered to contain a heap overflow in the function saveParentControlInfo. This vulnerability allows a
7.5HIGH
CVE-2022-25555
all versions
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function fromSetSysTime. This vulnerability allows attacke
7.5HIGH
CVE-2022-25554
all versions
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function saveParentControlInfo. This vulnerability allows
7.5HIGH
CVE-2022-25553
all versions
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function formSetSysToolDDNS. This vulnerability allows att
7.5HIGH
CVE-2022-25552
all versions
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function form_fast_setting_wifi_set. This vulnerability al
7.5HIGH
CVE-2022-25551
all versions
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function formSetSysToolDDNS. This vulnerability allows att
7.5HIGH
CVE-2022-25550
all versions
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function saveParentControlInfo. This vulnerability allows
7.5HIGH
CVE-2022-25549
all versions
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function formSetSysToolDDNS. This vulnerability allows att
7.5HIGH
CVE-2022-25548
all versions
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function fromSetSysTime. This vulnerability allows attacke
7.5HIGH
CVE-2022-25547
all versions
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function fromSetSysTime. This vulnerability allows attacke
7.5HIGH
CVE-2022-25546
all versions
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function formSetSysToolDDNS. This vulnerability allows att
7.5HIGH
threatengine.sh