Medium severity6.3NVD Advisory· Published May 1, 2025· Updated Jun 17, 2026
CVE-2025-44866
CVE-2025-44866
Description
Tenda W20E V15.11.0.6 was found to contain a command injection vulnerability in the formSetDebugCfg function via the level parameter. This vulnerability allows attackers to execute arbitrary commands via a crafted request.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:o:tenda:w20e_firmware:15.11.0.6:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- github.com/Summermu/VulnForIoT/tree/main/Tenda_W20E/formSetDebugCfg_level/readme.mdnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.