VYPR
High severity8.8NVD Advisory· Published Sep 28, 2025· Updated Jun 17, 2026

CVE-2025-11120

CVE-2025-11120

Description

A weakness has been identified in Tenda AC8 16.03.34.06. The affected element is the function formSetServerConfig of the file /goform/SetServerConfig. Executing manipulation can lead to buffer overflow. It is possible to launch the attack remotely. The exploit has been made available to the public and could be exploited.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:o:tenda:ac18_firmware:16.03.34.06:*:*:*:*:*:*:*
  • Tenda/AC8llm-fuzzy2 versions
    16.03.34.06+ 1 more
    • (no CPE)range: 16.03.34.06
    • (no CPE)range: 16.03.34.06

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.