Tenda A15 Firmware
Don't miss out!
Thousands of developers use stack.watch to stay informed.Get an email whenever new security vulnerabilities are reported in Tenda A15 Firmware.
By the Year
In 2026 there have been 1 vulnerability in Tenda A15 Firmware with an average score of 9.8 out of ten. Last year, in 2025 A15 Firmware had 3 security vulnerabilities published. If vulnerabilities keep coming in at the current rate, it appears that number of security vulnerabilities in A15 Firmware in 2026 could surpass last years number. However, the average CVE base score of the vulnerabilities in 2026 is greater by 2.20.
| Year | Vulnerabilities | Average Score |
|---|---|---|
| 2026 | 1 | 9.80 |
| 2025 | 3 | 7.60 |
| 2024 | 1 | 7.20 |
| 2023 | 0 | 0.00 |
| 2022 | 14 | 9.64 |
It may take a day or so for new A15 Firmware vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.
Recent Tenda A15 Firmware Security Vulnerabilities
Stack Buffer Overflow in Tenda A15 15.13.07.13 UploadCfg
CVE-2026-4567
9.8 - Critical
- March 23, 2026
A vulnerability has been found in Tenda A15 15.13.07.13. The impacted element is the function UploadCfg of the file /cgi-bin/UploadCfg. The manipulation of the argument File leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Stack Overflow
Remote Buffer Overflow in Tenda A15 15.13.07.13 via wpapsk_crypto2_4g
CVE-2025-12619
8.8 - High
- November 03, 2025
A vulnerability was found in Tenda A15 15.13.07.13. Affected is the function fromSetWirelessRepeat of the file /goform/openNetworkGateway. The manipulation of the argument wpapsk_crypto2_4g results in buffer overflow. The attack can be launched remotely. The exploit has been made public and could be used.
Classic Buffer Overflow
Tenda A15 15.13.07.09 HTTP POST Buffer Overflow in /goform/multimodalAdd
CVE-2025-4897
7.5 - High
- May 18, 2025
A vulnerability was found in Tenda A15 15.13.07.09/15.13.07.13. It has been classified as critical. This affects an unknown part of the file /goform/multimodalAdd of the component HTTP POST Request Handler. The manipulation leads to buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Classic Buffer Overflow
Tenda A15 v15.13.07.13 Remote DoS via formArpNerworkSet
CVE-2025-4867
6.5 - Medium
- May 18, 2025
A vulnerability was found in Tenda A15 15.13.07.13. It has been declared as problematic. Affected by this vulnerability is the function formArpNerworkSet of the file /goform/ArpNerworkSet. The manipulation leads to denial of service. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Improper Resource Shutdown or Release
Critical Stack Buffer Overflow in Tenda A15 Web set_repeat5 15.13.07.13
CVE-2024-0532
7.2 - High
- January 15, 2024
A vulnerability was found in Tenda A15 15.13.07.13. It has been declared as critical. This vulnerability affects the function set_repeat5 of the file /goform/WifiExtraSet of the component Web-based Management Interface. The manipulation of the argument wpapsk_crypto2_4g/wpapsk_crypto5g leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Buffer Overflow
Tenda A15 stack overflow via security_5g in WifiBasicSet (V15.13.07.13)
CVE-2022-47120
9.8 - Critical
- December 30, 2022
Tenda A15 V15.13.07.13 was discovered to contain a stack overflow via the security_5g parameter at /goform/WifiBasicSet.
Memory Corruption
Stack overflow in Tenda A15 15.13.07.13 via wepauth param
CVE-2022-47115
9.8 - Critical
- December 30, 2022
Tenda A15 V15.13.07.13 was discovered to contain a stack overflow via the wepauth parameter at /goform/WifiBasicSet.
Memory Corruption
Stack Overflow in Tenda A15 V15.13.07.13 SysToolChangePwd
CVE-2022-47116
7.5 - High
- December 30, 2022
Tenda A15 V15.13.07.13 was discovered to contain a stack overflow via the SYSPS parameter at /goform/SysToolChangePwd.
Memory Corruption
Tenda A15 V15.13.07.13 Stack Overflow via /goform/WifiBasicSet
CVE-2022-47117
9.8 - Critical
- December 30, 2022
Tenda A15 V15.13.07.13 was discovered to contain a stack overflow via the security parameter at /goform/WifiBasicSet.
Memory Corruption
Stack Overflow Tenda A15 15.13.07.13 via WIFIBasicSet wepkey1
CVE-2022-47118
9.8 - Critical
- December 30, 2022
Tenda A15 V15.13.07.13 was discovered to contain a stack overflow via the wepkey1 parameter at /goform/WifiBasicSet.
Memory Corruption
Tenda A15 V15.13.07.13 Stack Overflow via SSID at /goform/WifiBasicSet
CVE-2022-47119
9.8 - Critical
- December 30, 2022
Tenda A15 V15.13.07.13 was discovered to contain a stack overflow via the ssid parameter at /goform/WifiBasicSet.
Memory Corruption
Stack Overflow via wepkey in Tenda A15 V15.13.07.13 /goform/WifiBasicSet
CVE-2022-47121
9.8 - Critical
- December 30, 2022
Tenda A15 V15.13.07.13 was discovered to contain a stack overflow via the wepkey parameter at /goform/WifiBasicSet.
Memory Corruption
Stack Overflow in Tenda A15 V15.13.07.13 via wrlPwd_5g
CVE-2022-47122
9.8 - Critical
- December 30, 2022
Tenda A15 V15.13.07.13 was discovered to contain a stack overflow via the wrlPwd_5g parameter at /goform/WifiBasicSet.
Memory Corruption
Stack Overflow in Tenda A15 V15.13.07.13 /goform/WifiBasicSet wepkey3 Parameter
CVE-2022-47123
9.8 - Critical
- December 30, 2022
Tenda A15 V15.13.07.13 was discovered to contain a stack overflow via the wepkey3 parameter at /goform/WifiBasicSet.
Memory Corruption
Tenda A15 V15.13.07.13 Stack Overflow via wepkey4 at /goform/WifiBasicSet
CVE-2022-47124
9.8 - Critical
- December 30, 2022
Tenda A15 V15.13.07.13 was discovered to contain a stack overflow via the wepkey4 parameter at /goform/WifiBasicSet.
Memory Corruption
Tenda A15 V15.13.07.13 Stack Overflow via wrlEn_5g at /goform/WifiBasicSet
CVE-2022-47125
9.8 - Critical
- December 30, 2022
Tenda A15 V15.13.07.13 was discovered to contain a stack overflow via the wrlEn_5g parameter at /goform/WifiBasicSet.
Memory Corruption
Stack overflow via wrlEn in Tenda A15 V15.13.07.13 WifiBasicSet
CVE-2022-47126
9.8 - Critical
- December 30, 2022
Tenda A15 V15.13.07.13 was discovered to contain a stack overflow via the wrlEn parameter at /goform/WifiBasicSet.
Memory Corruption
Stack Overflow in Tenda A15 WiFiRouter v15.13 via wrlPwd /goform/WifiBasicSet
CVE-2022-47127
9.8 - Critical
- December 30, 2022
Tenda A15 V15.13.07.13 was discovered to contain a stack overflow via the wrlPwd parameter at /goform/WifiBasicSet.
Memory Corruption
Stack Overflow in Tenda A15 V15.13.07.13 via wepkey2 (WifiBasicSet)
CVE-2022-47128
9.8 - Critical
- December 30, 2022
Tenda A15 V15.13.07.13 was discovered to contain a stack overflow via the wepkey2 parameter at /goform/WifiBasicSet.
Memory Corruption
Stay on top of Security Vulnerabilities
Want an email whenever new vulnerabilities are published for Tenda A15 Firmware or by Tenda? Click the Watch button to subscribe.