VYPR
Unrated severityNVD Advisory· Published Sep 28, 2025· Updated Sep 29, 2025

Tenda AC8 SetServerConfig formSetServerConfig buffer overflow

CVE-2025-11120

Description

A weakness has been identified in Tenda AC8 16.03.34.06. The affected element is the function formSetServerConfig of the file /goform/SetServerConfig. Executing manipulation can lead to buffer overflow. It is possible to launch the attack remotely. The exploit has been made available to the public and could be exploited.

Affected products

2
  • Tenda/AC8llm-fuzzy
    Range: = 16.03.34.06
  • Tenda/AC8v5
    Range: 16.03.34.06

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

5

News mentions

0

No linked articles in our index yet.