Unrated severityNVD Advisory· Published Sep 9, 2025· Updated Sep 9, 2025
Tenda AC20 GetParentControlInfo strcpy buffer overflow
CVE-2025-10120
Description
A vulnerability was detected in Tenda AC20 up to 16.03.08.12. The impacted element is the function strcpy of the file /goform/GetParentControlInfo. The manipulation of the argument mac results in buffer overflow. The attack may be performed from remote. The exploit is now public and may be used.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- github.com/cymiao1978/cve/blob/main/4.mdmitreexploit
- vuldb.commitrethird-party-advisory
- github.com/cymiao1978/cve/blob/main/4.mdmitrerelated
- vuldb.commitresignaturepermissions-required
- vuldb.commitrevdb-entrytechnical-description
- www.tenda.com.cnmitreproduct
News mentions
0No linked articles in our index yet.