Unrated severityNVD Advisory· Published Jun 7, 2025· Updated Jun 9, 2025
Tenda AC9 POST Request AdvSetLanip fromadvsetlanip buffer overflow
CVE-2025-5839
Description
A vulnerability, which was classified as critical, has been found in Tenda AC9 15.03.02.13. Affected by this issue is the function fromadvsetlanip of the file /goform/AdvSetLanip of the component POST Request Handler. The manipulation of the argument lanMask leads to buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Affected products
2- Tenda/AC9v5Range: 15.03.02.13
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- candle-throne-f75.notion.site/Tenda-AC9-fromadvsetlanip-20adf0aa11858027b7c3c2f4e44bb867mitreexploit
- vuldb.commitrethird-party-advisory
- vuldb.commitresignaturepermissions-required
- vuldb.commitrevdb-entrytechnical-description
- www.tenda.com.cnmitrebroken-linkproduct
News mentions
0No linked articles in our index yet.