📦 Ac21 Firmware

by Tenda

🔍 What is Ac21 Firmware?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-9605

CRITICAL CVSS 9.8 Aug 29, 2025

A stack-based buffer overflow vulnerability in Tenda AC21 and AC23 routers allows remote attackers to execute arbitrary code by sending specially crafted requests to the GetParentControlInfo function....

CVE-2025-13445

HIGH CVSS 8.8 Nov 20, 2025

CVE-2025-13445 is a stack-based buffer overflow vulnerability in Tenda AC21 routers that allows remote attackers to execute arbitrary code by manipulating arguments in the /goform/SetIpMacBind endpoin...

CVE-2025-13446

HIGH CVSS 8.8 Nov 20, 2025

This vulnerability in Tenda AC21 routers allows remote attackers to execute arbitrary code via a stack-based buffer overflow in the SetSysTimeCfg endpoint. Attackers can exploit this without authentic...

CVE-2025-11091

HIGH CVSS 8.8 Sep 28, 2025

A buffer overflow vulnerability exists in Tenda AC21 routers through firmware version 16.03.08.16. Attackers can remotely exploit this flaw by sending specially crafted requests to the /goform/SetStat...

CVE-2025-10838

HIGH CVSS 8.8 Sep 23, 2025

A buffer overflow vulnerability in Tenda AC21 routers allows remote attackers to execute arbitrary code by manipulating the wpapsk_crypto parameter. This affects Tenda AC21 routers running firmware ve...

CVE-2023-24333

HIGH CVSS 8.8 Feb 21, 2024

A stack overflow vulnerability in Tenda AC21 routers allows attackers to execute arbitrary commands via crafted POST requests to the /goform/openSchedWifi endpoint. This affects Tenda AC21 devices wit...

CVE-2025-65220

MEDIUM CVSS 4.3 Nov 20, 2025

A buffer overflow vulnerability in Tenda AC21 routers allows attackers to execute arbitrary code or crash the device by sending specially crafted requests to the /goform/SetVirtualServerCfg endpoint. ...

CVE-2025-65221

MEDIUM CVSS 4.3 Nov 20, 2025

Tenda AC21 router firmware version V16.03.08.16 contains a buffer overflow vulnerability in the setPptpUserList function. Attackers can exploit this by sending specially crafted requests to the /gofor...

CVE-2025-65222

MEDIUM CVSS 4.3 Nov 20, 2025

Tenda AC21 router firmware version V16.03.08.16 contains a buffer overflow vulnerability in the rebootTime parameter of the /goform/SetSysAutoRebbotCfg endpoint. This allows attackers to potentially e...

CVE-2025-65223

MEDIUM CVSS 4.3 Nov 20, 2025

A buffer overflow vulnerability exists in Tenda AC21 routers version V16.03.08.16 via the urls parameter in the /goform/saveParentControlInfo endpoint. This allows attackers to potentially execute arb...

CVE-2025-65226

MEDIUM CVSS 4.3 Nov 20, 2025

Tenda AC21 router firmware version V16.03.08.16 contains a buffer overflow vulnerability in the deviceId parameter of the /goform/saveParentControlInfo endpoint. This allows attackers to potentially e...