CVE Tools

AC8 Firmware

62 CVEs tracked. None of them is in CISA KEV.

This hub aggregates every CVE we track for AC8 Firmware, a product in the networking infrastructure space. Use it to gauge the current risk picture and drill into individual advisories.

AC8 Firmware CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
AC8 Firmware CVEs per month
MonthCVEs
2024-103
2024-111
2024-120
2025-013
2025-025
2025-034
2025-040
2025-051
2025-062
2025-075
2025-081
2025-091
2025-101
2025-111
2025-120
2026-010
2026-023
2026-033
2026-040
2026-050
2026-060
2026-070
2026-080
2026-090

Severity

How the 62 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • Critical2947%
  • High2439%
  • Medium915%

Latest CVEs

The 15 most recently published vulnerabilities affecting AC8 Firmware.

  1. CVE-2026-4254Tenda AC8 HTTP Endpoint SysToolChangePwd doSystemCmd stack-based overflow9.8
  2. CVE-2026-4253Tenda AC8 Web UploadCfg route_set_user_policy_rule os command injection4.7
  3. CVE-2026-4252Tenda AC8 IPv6 check_is_ipv6 ip address for authentication9.8
  4. CVE-2026-3044Tenda AC8 Httpd Service UploadCfg webCgiGetUploadFile stack-based overflow8.8
  5. CVE-2026-2203Tenda AC8 Embedded Httpd Service fast_setting_wifi_set buffer overflow8.8
  6. CVE-2026-2202Tenda AC8 httpd WifiGuestSet fromSetWifiGusetBasic buffer overflow8.8
  7. CVE-2025-12618Tenda AC8 DatabaseIniSet buffer overflow8.8
  8. CVE-2025-61498A buffer overflow in the UPnP service of Tenda AC8 Hardware v03.03.10.01 allows attackers to cause a Denial of Service (DoS) via supplying a crafted packet.7.5
  9. CVE-2025-55852Tenda AC8 v16.03.34.06 is vulnerable to Buffer Overflow in the formWifiBasicSet function via the parameter security or security_5g.7.5
  10. CVE-2025-52054An issue was discovered in Tenda AC8 v4.0 AC1200 Dual-band Gigabit Wireless Router AC8v4.0 Firmware 16.03.33.05. The root password of the device is calculated with a static string and the last two ...5.3
  11. CVE-2025-51088Tenda AC8V4 V16.03.34.06` was discovered to contain stack overflow at /goform/WifiGuestSet. The manipulation of the argument `shareSpeed` leads to stack-based buffer overflow.5.3
  12. CVE-2025-51085Tenda AC8V4 V16.03.34.06` was discovered to contain stack overflow at /goform/SetSysTimeCfg. The manipulation of the argument `timeZone` and `timeType` leads to stack-based buffer overflow.5.3
  13. CVE-2025-51089Tenda AC8V4 V16.03.34.06` was discovered to contain heap overflow at /goform/GetParentControlInfo.The manipulation of the argument `mac` leads to heap-based buffer overflow.6.5
  14. CVE-2025-51087Tenda AC8V4 V16.03.34.06` was discovered to contain stack overflow at /goform/saveParentControlInfo. The manipulation of the argument time leads to stack-based buffer overflow.8.6
  15. CVE-2025-51082Tenda AC8V4 V16.03.34.06` was discovered to contain stack overflow at /goform/fast_setting_wifi_set. The manipulation of the argument `timeZone` leads to stack-based buffer overflow.5.3

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store