VYPR
Medium severity4.3NVD Advisory· Published Apr 4, 2025· Updated Jun 17, 2026

CVE-2025-3203

CVE-2025-3203

Description

A vulnerability classified as problematic was found in Tenda W18E 16.01.0.11. Affected by this vulnerability is the function formSetAccountList of the file /goform/setModules. The manipulation of the argument Password leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

Affected products

3
  • Tenda/W18Ellm-fuzzy2 versions
    = 16.01.0.11+ 1 more
    • (no CPE)range: = 16.01.0.11
    • (no CPE)range: 16.01.0.11
  • cpe:2.3:o:tenda:w18e_firmware:16.01.0.11:*:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.