📦 Ax9 Firmware

by Tenda

🔍 What is Ax9 Firmware?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-49429

CRITICAL CVSS 9.8 Dec 7, 2023

CVE-2023-49429 is a SQL injection vulnerability in Tenda AX9 routers that allows attackers to execute arbitrary SQL commands through the 'mac' parameter in the setDeviceInfo feature. This affects all ...

CVE-2023-49431

CRITICAL CVSS 9.8 Dec 7, 2023

This CVE describes a command injection vulnerability in Tenda AX9 routers that allows attackers to execute arbitrary commands on the device. The vulnerability exists in the 'mac' parameter of the /gof...

CVE-2023-49433

CRITICAL CVSS 9.8 Dec 7, 2023

Tenda AX9 routers running firmware V22.03.01.46 contain a stack overflow vulnerability in the SetVirtualServerCfg function. Attackers can exploit this by sending specially crafted requests to the '/go...

CVE-2023-49435

CRITICAL CVSS 9.8 Dec 7, 2023

Tenda AX9 routers running firmware version V22.03.01.46 contain a command injection vulnerability in the SetNetControlList function. This allows attackers to execute arbitrary commands on the device w...

CVE-2025-14636

LOW CVSS 3.7 Dec 13, 2025

This vulnerability in Tenda AX9 routers allows attackers to exploit weak hash functions in the firmware update mechanism via the httpd component. Attackers could potentially upload malicious firmware ...