VYPR
Unrated severityNVD Advisory· Published Sep 15, 2025· Updated Sep 15, 2025

Tenda AC9/AC15 exeCommand formexeCommand buffer overflow

CVE-2025-10443

Description

A vulnerability was identified in Tenda AC9 and AC15 15.03.05.14/15.03.05.18. This vulnerability affects the function formexeCommand of the file /goform/exeCommand. Such manipulation of the argument cmdinput leads to buffer overflow. The attack can be executed remotely. The exploit is publicly available and might be used.

Affected products

4
  • Tenda/AC9llm-fuzzy2 versions
    15.03.05.14 / 15.03.05.18+ 1 more
    • (no CPE)range: 15.03.05.14 / 15.03.05.18
    • (no CPE)range: 15.03.05.14
  • Tenda/AC15llm-fuzzy2 versions
    15.03.05.14 / 15.03.05.18+ 1 more
    • (no CPE)range: 15.03.05.14 / 15.03.05.18
    • (no CPE)range: 15.03.05.14

Patches

Vulnerability mechanics

References

6

News mentions

0

No linked articles in our index yet.