VYPR
Medium severity6.5NVD Advisory· Published Mar 4, 2025· Updated Jun 17, 2026

CVE-2025-1898

CVE-2025-1898

Description

A vulnerability, which was classified as critical, was found in Tenda TX3 16.03.13.11_multi. Affected is an unknown function of the file /goform/openSchedWifi. The manipulation of the argument schedStartTime/schedEndTime leads to buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

Affected products

3
  • cpe:2.3:o:tenda:tx3_firmware:16.03.13.11:*:*:*:*:*:*:*
  • Tenda/TX3llm-fuzzy2 versions
    16.03.13.11_multi+ 1 more
    • (no CPE)range: 16.03.13.11_multi
    • (no CPE)range: 16.03.13.11_multi

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.