AC7
Tenda- Software type
- —
- Catalog vulnerabilities
- 30
Severity across 30 analyzed records
Verify to analyze this security profile
A short verification protects source data and prevents automated AI requests.
en
Severity across 30 analyzed records
A short verification protects source data and prevents automated AI requests.
As of 09/11/2026, within CyStack's analyzed data, AC7 has 0 security vulnerabilities published in the last 90 days. Of these, 0 are rated High or Critical. None of these vulnerabilities is listed in the CISA KEV catalog. CyStack recommends that organizations and individual users remediate applicable vulnerabilities as soon as possible.
CyStack does not yet have sufficient official-source data to identify the latest version of AC7 and determine which vulnerabilities affect that version.
| CVE | Exploitation status | Fix | Published | Severity |
|---|---|---|---|---|
CVE-2026-4974Tenda AC7 POST Request SetSysTimeCfg fromSetSysTime memory corruption | Exploitation statusPublic exploit | FixNot confirmed | Published03/27/2026 | SeverityHigh |
CVE-2025-11586Tenda AC7 setNotUpgrade stack-based overflow | Exploitation statusPublic exploit | FixYes | Published10/10/2025 | SeverityHigh |
CVE-2025-11528Tenda AC7 saveAutoQos stack-based overflow | Exploitation statusPublic exploit | FixNot confirmed | Published10/09/2025 | SeverityHigh |
CVE-2025-11527Tenda AC7 fast_setting_pppoe_set stack-based overflow | Exploitation statusPublic exploit | FixNot confirmed | Published10/09/2025 | SeverityHigh |
CVE-2025-11526Tenda AC7 WifiMacFilterSet stack-based overflow | Exploitation statusPublic exploit | FixNot confirmed | Published10/09/2025 | SeverityHigh |
CVE-2025-11525Tenda AC7 SetUpnpCfg stack-based overflow | Exploitation statusPublic exploit | FixNot confirmed | Published10/09/2025 | SeverityHigh |
CVE-2025-11524Tenda AC7 SetDDNSCfg stack-based overflow | Exploitation statusPublic exploit | FixNot confirmed | Published10/09/2025 | SeverityHigh |
CVE-2025-11523Tenda AC7 AdvSetLanip command injection | Exploitation statusPublic exploit | FixNot confirmed | Published10/09/2025 | SeverityMedium |
CVE-2025-9023Tenda AC7/AC18 SetLEDCfg formSetSchedLed buffer overflow | Exploitation statusPublic exploit | FixNot confirmed | Published08/15/2025 | SeverityHigh |
CVE-2025-8017Tenda AC7 httpd setMacFilterCfg formSetMacFilterCfg stack-based overflow | Exploitation statusPublic exploit | FixNot confirmed | Published07/22/2025 | SeverityHigh |
CVE-2025-5862Tenda AC7 setPptpUserList formSetPPTPUserList buffer overflow | Exploitation statusPublic exploit | FixNot confirmed | Published06/09/2025 | SeverityHigh |
CVE-2025-5861Tenda AC7 AdvSetLanip fromadvsetlanip buffer overflow | Exploitation statusPublic exploit | FixNot confirmed | Published06/09/2025 | SeverityHigh |
CVE-2025-4810Tenda AC7 SetRebootTimer formSetRebootTimer stack-based overflow | Exploitation statusPublic exploit | FixNot confirmed | Published05/16/2025 | SeverityHigh |
CVE-2025-4809Tenda AC7 setMacFilterCfg fromSafeSetMacFilter stack-based overflow | Exploitation statusPublic exploit | FixNot confirmed | Published05/16/2025 | SeverityHigh |
CVE-2025-3346Tenda AC7 SetPptpServerCfg formSetPPTPServer buffer overflow | Exploitation statusPublic exploit | FixNot confirmed | Published04/07/2025 | SeverityHigh |
CVE-2025-1851Tenda AC7 SetFirewallCfg formSetFirewallCfg stack-based overflow | Exploitation statusPublic exploit | FixNot confirmed | Published03/03/2025 | SeverityHigh |
CVE-2024-10280Tenda AC6/AC7/AC8/AC9/AC10/AC10U/AC15/AC18/AC500/AC1206 GetIPTV websReadEvent null pointer dereference | Exploitation statusPublic exploit | FixNot confirmed | Published10/23/2024 | SeverityHigh |
CVE-2024-2903Tenda AC7 GetParentControlInfo stack-based overflow | Exploitation statusPublic exploit | FixNot confirmed | Published03/26/2024 | SeverityHigh |
CVE-2024-2902Tenda AC7 WifiGuestSet fromSetWifiGusetBasic stack-based overflow | Exploitation statusPublic exploit | FixNot confirmed | Published03/26/2024 | SeverityHigh |
CVE-2024-2901Tenda AC7 openSchedWifi setSchedWifi stack-based overflow | Exploitation statusPublic exploit | FixNot confirmed | Published03/26/2024 | SeverityHigh |
CVE-2024-2900Tenda AC7 saveParentControlInfo stack-based overflow | Exploitation statusPublic exploit | FixNot confirmed | Published03/26/2024 | SeverityHigh |
CVE-2024-2899Tenda AC7 WifiExtraSet fromSetWirelessRepeat stack-based overflow | Exploitation statusPublic exploit | FixNot confirmed | Published03/26/2024 | SeverityHigh |
CVE-2024-2898Tenda AC7 SetStaticRouteCfg fromSetRouteStatic stack-based overflow | Exploitation statusPublic exploit | FixNot confirmed | Published03/26/2024 | SeverityHigh |
CVE-2024-2897Tenda AC7 WriteFacMac formWriteFacMac os command injection | Exploitation statusPublic exploit | FixNot confirmed | Published03/26/2024 | SeverityMedium |
CVE-2024-2896Tenda AC7 WifiWpsStart formWifiWpsStart stack-based overflow | Exploitation statusPublic exploit | FixNot confirmed | Published03/26/2024 | SeverityHigh |
CVE-2024-2895Tenda AC7 WifiWpsOOB formWifiWpsOOB stack-based overflow | Exploitation statusPublic exploit | FixNot confirmed | Published03/26/2024 | SeverityHigh |
CVE-2024-2894Tenda AC7 SetNetControlList formSetQosBand stack-based overflow | Exploitation statusPublic exploit | FixNot confirmed | Published03/26/2024 | SeverityHigh |
CVE-2024-2893Tenda AC7 SetOnlineDevName formSetDeviceName stack-based overflow | Exploitation statusPublic exploit | FixNot confirmed | Published03/26/2024 | SeverityHigh |
CVE-2024-2892Tenda AC7 setcfm formSetCfm stack-based overflow | Exploitation statusPublic exploit | FixNot confirmed | Published03/26/2024 | SeverityHigh |
CVE-2024-2891Tenda AC7 QuickIndex formQuickIndex stack-based overflow | Exploitation statusPublic exploit | FixNot confirmed | Published03/26/2024 | SeverityHigh |
CyStack VulnScan continuously discovers assets, validates vulnerabilities, and helps security teams prioritize remediation across the organization.
Explore CyStack VulnScan