VYPR
Unrated severityNVD Advisory· Published May 1, 2025· Updated May 2, 2025

CVE-2025-46630

CVE-2025-46630

Description

Improper access controls in the web management portal of the Tenda RX2 Pro 16.03.30.14 allows an unauthenticated remote attacker to enable 'ate' (a remote system management binary) by sending a /goform/ate web request.

Affected products

2
  • Tenda/RX2 Prodescription
  • Tenda/RX2 Prollm-fuzzy
    Range: = 16.03.30.14

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.