VYPR
Unrated severityNVD Advisory· Published May 5, 2025· Updated May 6, 2025

Tenda AC1206 setcfm formSetCfm buffer overflow

CVE-2025-4298

Description

A vulnerability was found in Tenda AC1206 up to 15.03.06.23. It has been declared as critical. This vulnerability affects the function formSetCfm of the file /goform/setcfm. The manipulation leads to buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

Affected products

2
  • Tenda/AC1206llm-fuzzy
    Range: <=15.03.06.23
  • Tenda/AC1206v5
    Range: 15.03.06.0

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

5

News mentions

0

No linked articles in our index yet.