VYPR
Unrated severityNVD Advisory· Published Sep 23, 2025· Updated Sep 23, 2025

Tenda AC21 WifiExtraSet sub_45BB10 buffer overflow

CVE-2025-10838

Description

A vulnerability was identified in Tenda AC21 16.03.08.16. The affected element is the function sub_45BB10 of the file /goform/WifiExtraSet. The manipulation of the argument wpapsk_crypto leads to buffer overflow. It is possible to initiate the attack remotely. The exploit is publicly available and might be used.

Affected products

2
  • Tenda/AC21llm-fuzzy
    Range: = 16.03.08.16
  • Tenda/AC21v5
    Range: 16.03.08.16

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

6

News mentions

0

No linked articles in our index yet.