CVE-2018-14492: Tendacn AC10 Firmware

High severity, CVSS 7.5. EPSS: 1.1% chance of exploitation in the next 30 days.

Tenda AC7 through V15.03.06.44_CN, AC9 through V15.03.05.19(6318)_CN, and AC10 through V15.03.06.23_CN devices have a Stack-based Buffer Overflow via a long limitSpeed or limitSpeedup parameter to an unspecified /goform URI.

Affected products

  • Tendacn AC10 Firmware: up to and including 15.03.06.23_cn
  • Tendacn AC15 Firmware: up to and including 15.03.05.19_cn
  • Tendacn AC18 Firmware: up to and including 15.03.05.19\(6318\)_cn
  • Tendacn AC7 Firmware: up to and including 15.03.06.44_cn
  • Tendacn AC9 Firmware: up to and including v15.03.05.19\(6318\)_cn

Published 2018-07-21. Last modified 2026-06-17.