VYPR
Unrated severityNVD Advisory· Published Aug 29, 2025· Updated Aug 29, 2025

Tenda AC21/AC23 GetParentControlInfo stack-based overflow

CVE-2025-9605

Description

A security vulnerability has been detected in Tenda AC21 and AC23 16.03.08.16. Affected is the function GetParentControlInfo of the file /goform/GetParentControlInfo. Such manipulation of the argument mac leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed publicly and may be used.

Affected products

4
  • Tenda/AC21llm-fuzzy
    Range: =16.03.08.16
  • Tenda/AC23llm-fuzzy
    Range: =16.03.08.16
  • Tenda/AC21v5
    Range: 16.03.08.16
  • Tenda/AC23v5
    Range: 16.03.08.16

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

7

News mentions

0

No linked articles in our index yet.