Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
9.8
CVE-2026-51934: Tenda A18 router can be hijacked remotely
CVE-2026-51934 · published 2 days ago
Summary
The Tenda A18 Wi‑Fi router, version 15.13.07.09, contains a flaw that lets someone on the network run their own software on the device. This could give an attacker control of the router and the data flowing through it. Install the latest firmware from the vendor or disable remote access until a patch is applied.
Original advisory text
Buffer Overflow vulnerability in Shenzhen Jixiang Tengda Technology Co., Ltd. Tenda A18 v.15.13.07.09 allows a remote attacker to execute arbitrary code via the fromSetCmdlineRun function
Buffer Overflow vulnerability in Shenzhen Jixiang Tengda Technology Co., Ltd. Tenda A18 v.15.13.07.09 allows a remote attacker to execute arbitrary code via the fromSetCmdlineRun function
Severity
9.8
Critical
Exploitation
EPSS <1%
Type
CWE-120Classic Buffer Overflow
Timeline
Published1 Sep 2026
Updated3 Sep 2026
First seen1 Sep 2026
Monitor software like this
Free during beta