Unrated severityNVD Advisory· Published Sep 28, 2025· Updated Sep 29, 2025
Tenda AC8 SetServerConfig formSetServerConfig buffer overflow
CVE-2025-11120
Description
A weakness has been identified in Tenda AC8 16.03.34.06. The affected element is the function formSetServerConfig of the file /goform/SetServerConfig. Executing manipulation can lead to buffer overflow. It is possible to launch the attack remotely. The exploit has been made available to the public and could be exploited.
Affected products
2- Tenda/AC8v5Range: 16.03.34.06
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- github.com/alc9700jmo/CVE/issues/19mitreexploitissue-tracking
- vuldb.commitrethird-party-advisory
- vuldb.commitresignaturepermissions-required
- vuldb.commitrevdb-entrytechnical-description
- www.tenda.com.cnmitreproduct
News mentions
0No linked articles in our index yet.