High severity8.8NVD Advisory· Published Jun 9, 2025· Updated Jun 17, 2026
CVE-2025-5862
CVE-2025-5862
Description
A vulnerability was found in Tenda AC7 15.03.06.44 and classified as critical. This issue affects the function formSetPPTPUserList of the file /goform/setPptpUserList. The manipulation of the argument list leads to buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:o:tenda:ac7_firmware:15.03.06.44:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
6- lavender-bicycle-a5a.notion.site/Tenda-AC7-formSetPPTPUserList-20a53a41781f806ca124cbdf99bff931nvdExploitThird Party Advisory
- lavender-bicycle-a5a.notion.site/Tenda-AC7-formSetPPTPUserList-20a53a41781f806ca124cbdf99bff931nvdExploitThird Party Advisory
- vuldb.comnvdThird Party AdvisoryVDB Entry
- vuldb.comnvdThird Party AdvisoryVDB Entry
- vuldb.comnvdPermissions Required
- www.tenda.com.cnnvdProduct
News mentions
0No linked articles in our index yet.