Unrated severityNVD Advisory· Published Nov 2, 2025· Updated Feb 24, 2026
Tenda AC23 SetVirtualServerCfg formSetVirtualSer buffer overflow
CVE-2025-12595
Description
A weakness has been identified in Tenda AC23 16.03.07.52. This impacts the function formSetVirtualSer of the file /goform/SetVirtualServerCfg. This manipulation of the argument list causes buffer overflow. It is possible to initiate the attack remotely. The exploit has been made available to the public and could be used for attacks.
Affected products
2- Tenda/AC23v5cpe:2.3:o:tenda:ac23_firmware:*:*:*:*:*:*:*:*Range: 16.03.07.52
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- github.com/LX-LX88/cve/issues/8mitrebroken-linkexploitissue-tracking
- vuldb.commitrethird-party-advisory
- vuldb.commitresignaturepermissions-required
- vuldb.commitrevdb-entrytechnical-description
- www.tenda.com.cnmitreproduct
News mentions
0No linked articles in our index yet.