📦 Ax12 Firmware

by Tenda

🔍 What is Ax12 Firmware?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-28383

CRITICAL CVSS 9.8 Mar 14, 2024

This vulnerability is a stack overflow in Tenda AX12 routers that allows remote attackers to execute arbitrary code by sending a specially crafted SSID parameter. It affects Tenda AX12 v1.0 routers ru...

CVE-2023-49425

CRITICAL CVSS 9.8 Dec 7, 2023

CVE-2023-49425 is a critical stack overflow vulnerability in Tenda AX12 routers that allows remote attackers to execute arbitrary code by sending specially crafted requests to the /goform/setMacFilter...

CVE-2023-49428

CRITICAL CVSS 9.8 Dec 7, 2023

This CVE describes a command injection vulnerability in Tenda AX12 routers where an attacker can execute arbitrary commands via the 'mac' parameter in the SetOnlineDevName endpoint. Attackers with net...

CVE-2023-49424

CRITICAL CVSS 9.8 Dec 7, 2023

CVE-2023-49424 is a critical stack overflow vulnerability in Tenda AX12 routers that allows remote attackers to execute arbitrary code by sending specially crafted requests to the /goform/SetVirtualSe...

CVE-2022-28082

CRITICAL CVSS 9.8 May 4, 2022

CVE-2022-28082 is a critical stack overflow vulnerability in Tenda AX12 routers that allows remote attackers to execute arbitrary code by sending specially crafted requests to the /goform/SetNetContro...

CVE-2025-29214

HIGH CVSS 7.5 Mar 20, 2025

Tenda AX12 routers running firmware version 22.03.01.46_CN contain a stack-based buffer overflow vulnerability in the setMacFilterCfg function. This allows remote attackers to execute arbitrary code o...

CVE-2023-49427

HIGH CVSS 7.5 Jan 10, 2024

A buffer overflow vulnerability in Tenda AX12 routers allows remote attackers to cause denial of service by sending specially crafted requests to the SetNetControlList function. This affects Tenda AX1...

CVE-2022-25561

HIGH CVSS 7.5 Mar 10, 2022

Tenda AX12 routers running firmware v22.03.01.21 contain a stack overflow vulnerability in the sub_42DE00 function. Attackers can exploit this via the list parameter to cause a Denial of Service (DoS)...

CVE-2022-25556

HIGH CVSS 7.5 Mar 10, 2022

Tenda AX12 routers running firmware v22.03.01.21 contain a stack overflow vulnerability in the sub_42E328 function. Attackers can exploit this via the list parameter to cause a Denial of Service (DoS)...

CVE-2021-46408

HIGH CVSS 7.5 Mar 10, 2022

A stack buffer overflow vulnerability exists in Tenda AX12 routers running firmware v22.03.01.21. Attackers can exploit this via the strcpy parameter to cause a Denial of Service (DoS), potentially cr...

CVE-2021-45391

HIGH CVSS 7.5 Feb 16, 2022

A buffer overflow vulnerability in Tenda AX12 routers allows attackers to cause denial of service by sending specially crafted requests to the httpd service. This affects Tenda AX12 router users runni...

CVE-2022-24143

HIGH CVSS 7.5 Feb 4, 2022

This CVE describes a stack overflow vulnerability in Tenda AX3 and AX12 routers' form_fast_setting_wifi_set function. Attackers can exploit it by sending specially crafted timeZone parameter values to...