📦 Ac23 Firmware

by Tenda

🔍 What is Ac23 Firmware?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-9605

CRITICAL CVSS 9.8 Aug 29, 2025

A stack-based buffer overflow vulnerability in Tenda AC21 and AC23 routers allows remote attackers to execute arbitrary code by sending specially crafted requests to the GetParentControlInfo function....

CVE-2023-40799

CRITICAL CVSS 9.8 Aug 25, 2023

CVE-2023-40799 is a critical buffer overflow vulnerability in Tenda AC23 routers that allows remote attackers to execute arbitrary code or cause denial of service. The vulnerability exists in the sub_...

CVE-2026-1420

HIGH CVSS 8.8 Jan 26, 2026

This vulnerability allows remote attackers to execute arbitrary code on Tenda AC23 routers via a buffer overflow in the WifiExtraSet function. Attackers can exploit this without authentication by send...

CVE-2026-0640

HIGH CVSS 8.8 Jan 6, 2026

A buffer overflow vulnerability in Tenda AC23 routers allows remote attackers to execute arbitrary code by manipulating the Time parameter in the PowerSaveSet function. This affects users running firm...

CVE-2025-15216

HIGH CVSS 8.8 Dec 30, 2025

A stack-based buffer overflow vulnerability in Tenda AC23 routers allows remote attackers to execute arbitrary code by manipulating the bindnum parameter in the SetIpMacBind function. This affects Ten...

CVE-2025-15217

HIGH CVSS 8.8 Dec 30, 2025

A buffer overflow vulnerability in Tenda AC23 routers allows remote attackers to execute arbitrary code by sending specially crafted HTTP POST requests to the formSetPPTPUserList function. This affect...

CVE-2025-12595

HIGH CVSS 8.8 Nov 2, 2025

A buffer overflow vulnerability in Tenda AC23 routers allows remote attackers to execute arbitrary code by manipulating the argument list in the formSetVirtualSer function. This affects Tenda AC23 rou...

CVE-2025-11356

HIGH CVSS 8.8 Oct 7, 2025

A buffer overflow vulnerability in Tenda AC23 routers allows remote attackers to execute arbitrary code by exploiting improper input validation in the sscanf function. This affects Tenda AC23 routers ...

CVE-2025-8060

HIGH CVSS 8.8 Jul 23, 2025

A critical stack-based buffer overflow vulnerability in Tenda AC23 routers allows remote attackers to execute arbitrary code by manipulating the deviceList parameter in the httpd component. This affec...

CVE-2023-40798

HIGH CVSS 8.8 Aug 25, 2023

This vulnerability in Tenda AC23 routers allows authenticated attackers to execute arbitrary code via stack overflow in IPv6 and WAN parameter functions. It affects users running vulnerable firmware v...