CVE Tools

AC6 Firmware

134 CVEs tracked. None of them is in CISA KEV.

This hub aggregates every CVE we track for AC6 Firmware, a product in the networking infrastructure space. Use it to gauge the current risk picture and drill into individual advisories.

AC6 Firmware CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
AC6 Firmware CVEs per month
MonthCVEs
2024-101
2024-114
2024-124
2025-012
2025-023
2025-035
2025-040
2025-050
2025-067
2025-076
2025-0812
2025-092
2025-108
2025-110
2025-120
2026-010
2026-020
2026-032
2026-041
2026-053
2026-060
2026-070
2026-080
2026-090

Severity

How the 134 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • Critical5440%
  • High6347%
  • Medium1713%

Latest CVEs

The 15 most recently published vulnerabilities affecting AC6 Firmware.

  1. CVE-2026-8265Tenda AC6 httpd getLogFile get_log_file os command injection4.7
  2. CVE-2026-8264Tenda AC6 httpd WifiApScan formWifiApScan os command injection6.3
  3. CVE-2026-8259Tenda AC6 httpd telnet os command injection4.7
  4. CVE-2025-52221Tenda AC6 15.03.05.16_multi is vulnerable to Buffer Overflow in the formSetCfm function via the funcname, funcpara1, and funcpara2 parameters.9.8
  5. CVE-2026-4961Tenda AC6 POST Request QuickIndex formQuickIndex stack-based overflow8.8
  6. CVE-2026-4960Tenda AC6 POST Request WizardHandle fromWizardHandle stack-based overflow8.8
  7. CVE-2025-12225Tenda AC6 HTTP Request WifiGuestSet stack-based overflow8.8
  8. CVE-2025-60339Multiple buffer overflow vulnerabilities in the openSchedWifi function of Tenda AC6 v.15.03.06.50 allows attackers to cause a Denial of Service (DoS) via injecting a crafted payload into the schedS...7.5
  9. CVE-2025-60343Multiple buffer overflows in the AdvSetMacMtuWan function of Tenda AC6 v.15.03.06.50 allows attackers to cause a Denial of Service (DoS) via injecting a crafted payload into the wanMTU, wanSpeed, c...7.5
  10. CVE-2025-60342Tenda AC6 V2.0 15.03.06.50 was discovered to contain a stack overflow in the page parameter in the addressNat function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a ...7.5
  11. CVE-2025-60340Multiple buffer overflows in the SetClientState function of Tenda AC6 v.15.03.06.50 allows attackers to cause a Denial of Service (DoS) via injecting a crafted payload into the limitSpeed, deviceId...7.5
  12. CVE-2025-60337Tenda AC6 V2.0 15.03.06.50 was discovered to contain a buffer overflow in the speed_dir parameter in the SetSpeedWan function. This vulnerability allows attackers to cause a Denial of Service (DoS)...7.5
  13. CVE-2025-60341Tenda AC6 V2.0 15.03.06.50 was discovered to contain a stack overflow in the ssid parameter in the fast_setting_wifi_set function. This vulnerability allows attackers to cause a Denial of Service (...7.5
  14. CVE-2025-60338Tenda AC6 V2.0 15.03.06.50 was discovered to contain a stack overflow in the page parameter in the DhcpListClient function. This vulnerability allows attackers to cause a Denial of Service (DoS) vi...7.5
  15. CVE-2025-57528An issue was discovered in Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01 allowing attackers to cause a denial of service via the funcname, funcpara1, funcpara2 parameters to the formSetCfm functio...7.7

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store