VYPR
Unrated severityNVD Advisory· Published May 6, 2025· Updated May 6, 2025

Tenda DAP-1520 api set_ws_action heap-based overflow

CVE-2025-4355

Description

A vulnerability was found in Tenda DAP-1520 1.10B04_BETA02. It has been classified as critical. This affects the function set_ws_action of the file /dws/api/. The manipulation leads to heap-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

Affected products

2
  • Tenda/DAP-1520llm-create
    Range: = 1.10B04_BETA02
  • Tenda/DAP-1520v5
    Range: 1.10B04_BETA02

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

5

News mentions

0

No linked articles in our index yet.