Unrated severityNVD Advisory· Published Jul 17, 2025· Updated Jul 17, 2025
Tenda FH451 POST Request WizardHandle fromWizardHandle buffer overflow
CVE-2025-7747
Description
A vulnerability classified as critical has been found in Tenda FH451 1.0.0.9. This affects the function fromWizardHandle of the file /goform/WizardHandle of the component POST Request Handler. The manipulation of the argument PPW leads to buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Affected products
2- Tenda/FH451v5Range: 1.0.0.9
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- github.com/zezhifu1/cve_report/blob/main/FH451/fromWizardHandle.mdmitreexploit
- vuldb.commitrethird-party-advisory
- github.com/zezhifu1/cve_report/blob/main/FH451/fromWizardHandle.mdmitrerelated
- vuldb.commitresignaturepermissions-required
- vuldb.commitrevdb-entrytechnical-description
- www.tenda.com.cnmitreproduct
News mentions
0No linked articles in our index yet.