📦 Ax1806 Firmware

by Tenda

🔍 What is Ax1806 Firmware?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-44556

CRITICAL CVSS 9.8 Aug 26, 2024

This vulnerability allows remote attackers to execute arbitrary code on Tenda AX1806 routers via a stack overflow in the setIptvInfo function. Attackers can exploit this by sending specially crafted r...

CVE-2024-44563

CRITICAL CVSS 9.8 Aug 26, 2024

This vulnerability allows remote attackers to execute arbitrary code on Tenda AX1806 routers via a stack overflow in the setIptvInfo function. Attackers can exploit this by sending specially crafted r...

CVE-2024-40415

CRITICAL CVSS 9.8 Jul 15, 2024

A stack-based buffer overflow vulnerability in Tenda AX1806 router firmware allows remote attackers to execute arbitrary code or cause denial of service. This affects users of Tenda AX1806 routers wit...

CVE-2024-40414

CRITICAL CVSS 9.8 Jul 15, 2024

A stack-based buffer overflow vulnerability in Tenda AX1806 router firmware allows remote attackers to execute arbitrary code or crash the device. This affects users running vulnerable firmware versio...

CVE-2024-35571

CRITICAL CVSS 9.8 May 20, 2024

This vulnerability allows remote attackers to execute arbitrary code on Tenda AX1806 routers via a stack overflow in the formSetIptv function. Attackers can exploit this by sending specially crafted r...

CVE-2024-35580

CRITICAL CVSS 9.8 May 20, 2024

CVE-2024-35580 is a critical stack buffer overflow vulnerability in Tenda AX1806 routers that allows remote attackers to execute arbitrary code or cause denial of service. Attackers can exploit this b...

CVE-2023-47456

CRITICAL CVSS 9.1 Nov 7, 2023

Tenda AX1806 routers running firmware V1.0.0.1 contain a stack overflow vulnerability in the wireless repeater configuration function. This allows remote attackers to execute arbitrary code on the dev...

CVE-2025-70644

HIGH CVSS 7.5 Jan 21, 2026

Tenda AX-1806 routers running firmware v1.0.0.1 contain a stack overflow vulnerability in the time parameter handling. Attackers can exploit this to cause Denial of Service (DoS) by sending specially ...

CVE-2025-70645

HIGH CVSS 7.5 Jan 21, 2026

This CVE describes a stack overflow vulnerability in Tenda AX-1806 routers that allows attackers to cause Denial of Service (DoS) by sending specially crafted requests to the deviceList parameter. The...

CVE-2025-70650

HIGH CVSS 7.5 Jan 21, 2026

CVE-2025-70650 is a stack overflow vulnerability in Tenda AX-1806 routers that allows attackers to cause a Denial of Service (DoS) by sending specially crafted requests to the deviceList parameter. Th...

CVE-2025-70746

HIGH CVSS 7.5 Jan 16, 2026

A stack overflow vulnerability in Tenda AX-1806 routers allows attackers to cause Denial of Service (DoS) by sending specially crafted requests to the timeZone parameter. This affects all users runnin...

CVE-2025-71020

HIGH CVSS 7.5 Jan 16, 2026

Tenda AX-1806 routers running firmware v1.0.0.1 contain a stack overflow vulnerability in the security parameter handling. Attackers can exploit this by sending specially crafted requests to cause a D...

CVE-2025-70656

HIGH CVSS 7.5 Jan 15, 2026

CVE-2025-70656 is a stack overflow vulnerability in Tenda AX-1806 routers that allows attackers to cause Denial of Service (DoS) by sending specially crafted requests to the vulnerable 'mac' parameter...

CVE-2025-70744

HIGH CVSS 7.5 Jan 15, 2026

Tenda AX-1806 routers version 1.0.0.1 contain a stack overflow vulnerability in the cloneType parameter that allows attackers to cause Denial of Service (DoS) through crafted requests. This affects al...

CVE-2025-71019

HIGH CVSS 7.5 Jan 15, 2026

This vulnerability in Tenda AX-1806 routers allows attackers to cause a Denial of Service (DoS) by sending specially crafted requests that trigger a stack overflow in the wanSpeed parameter. Only user...

CVE-2025-70747

HIGH CVSS 7.5 Jan 14, 2026

Tenda AX-1806 routers running firmware v1.0.0.1 contain a stack overflow vulnerability in the serviceName parameter that allows remote attackers to crash the device via specially crafted requests. Thi...

CVE-2025-71021

HIGH CVSS 7.5 Jan 14, 2026

Tenda AX-1806 routers running firmware v1.0.0.1 contain a stack overflow vulnerability in the serverName parameter that allows attackers to crash the device via specially crafted requests. This affect...

CVE-2024-35578

HIGH CVSS 8.0 May 20, 2024

This vulnerability allows remote attackers to execute arbitrary code on Tenda AX1806 routers via a stack overflow in the formSetIptv function. Attackers can exploit this by sending specially crafted r...

CVE-2024-4239

HIGH CVSS 8.8 Apr 26, 2024

A critical stack-based buffer overflow vulnerability in Tenda AX1806 routers allows remote attackers to execute arbitrary code by manipulating the rebootTime parameter. This affects Tenda AX1806 route...

CVE-2024-4238

HIGH CVSS 8.8 Apr 26, 2024

This critical vulnerability in Tenda AX1806 routers allows remote attackers to execute arbitrary code via a stack-based buffer overflow in the device name setting function. Attackers can exploit this ...

CVE-2022-28969

HIGH CVSS 7.5 May 6, 2022

CVE-2022-28969 is a stack overflow vulnerability in Tenda AX1806 routers that allows attackers to cause a Denial of Service (DoS) by sending specially crafted requests to the shareSpeed parameter. Thi...

CVE-2022-28971

HIGH CVSS 7.5 May 6, 2022

This vulnerability is a stack overflow in Tenda AX1806 routers via the list parameter in the fromSetIpMacBind function. Attackers can exploit this to cause a Denial of Service (DoS) by crashing the de...

CVE-2022-28973

HIGH CVSS 7.5 May 6, 2022

A stack overflow vulnerability exists in Tenda AX1806 routers via the wanMTU parameter in the fromAdvSetMacMtuWan function. Attackers can exploit this to cause a Denial of Service (DoS) by crashing th...

CVE-2022-25558

HIGH CVSS 7.5 Mar 10, 2022

Tenda AX1806 routers running firmware v1.0.0.1 contain a stack overflow vulnerability in the formSetProvince function. Attackers can exploit this by sending specially crafted ProvinceCode parameters t...

CVE-2022-25554

HIGH CVSS 7.5 Mar 10, 2022

Tenda AX1806 routers running firmware v1.0.0.1 contain a stack overflow vulnerability in the saveParentControlInfo function. Attackers can exploit this via the deviceId parameter to cause a Denial of ...

CVE-2022-25552

HIGH CVSS 7.5 Mar 10, 2022

A stack overflow vulnerability in Tenda AX1806 routers allows attackers to cause Denial of Service (DoS) by sending specially crafted requests to the form_fast_setting_wifi_set function. This affects ...

CVE-2022-25550

HIGH CVSS 7.5 Mar 10, 2022

A stack overflow vulnerability in Tenda AX1806 routers allows attackers to cause Denial of Service by sending specially crafted deviceName parameters to the saveParentControlInfo function. This affect...

CVE-2022-25548

HIGH CVSS 7.5 Mar 10, 2022

Tenda AX1806 routers running firmware v1.0.0.1 contain a stack overflow vulnerability in the fromSetSysTime function. Attackers can exploit this by sending specially crafted requests to the serverName...

CVE-2022-25546

HIGH CVSS 7.5 Mar 10, 2022

Tenda AX1806 routers running firmware v1.0.0.1 contain a stack overflow vulnerability in the formSetSysToolDDNS function. Attackers can exploit this by sending specially crafted requests to the ddnsUs...

CVE-2024-40417

MEDIUM CVSS 6.5 Jul 10, 2024

A stack-based buffer overflow vulnerability exists in Tenda AX1806 routers running firmware version 1.0.0.1. Attackers can exploit this by sending specially crafted requests to the /goform/SetIpMacBin...