High severity7.5NVD Advisory· Published Oct 22, 2025· Updated Jun 17, 2026
CVE-2025-60340
CVE-2025-60340
Description
Multiple buffer overflows in the SetClientState function of Tenda AC6 v.15.03.06.50 allows attackers to cause a Denial of Service (DoS) via injecting a crafted payload into the limitSpeed, deviceId, and limitSpeedUp parameters.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:o:tenda:ac6_firmware:15.03.06.50:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- github.com/z472421519/BinaryAudit/blob/main/PoC/BOF/Tenda/SetClientState/SetClientState.mdnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.