VYPR
Unrated severityNVD Advisory· Published Sep 28, 2025· Updated Sep 29, 2025

Tenda AC21 SetStaticRouteCfg sscanf buffer overflow

CVE-2025-11091

Description

A security flaw has been discovered in Tenda AC21 up to 16.03.08.16. Affected by this vulnerability is the function sscanf of the file /goform/SetStaticRouteCfg. The manipulation of the argument list results in buffer overflow. The attack can be launched remotely. The exploit has been released to the public and may be exploited.

Affected products

2
  • Tenda/AC21llm-fuzzy
    Range: <=16.03.08.16
  • Tenda/AC21v5
    Range: 16.03.08.0

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

5

News mentions

0

No linked articles in our index yet.