Metrics
Affected Vendors & Products
Mon, 09 Jun 2025 19:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Tenda
Tenda ac15 Tenda ac15 Firmware |
|
CPEs | cpe:2.3:h:tenda:ac15:1.0:*:*:*:*:*:*:* cpe:2.3:o:tenda:ac15_firmware:15.03.05.19_multi:*:*:*:*:*:*:* |
|
Vendors & Products |
Tenda
Tenda ac15 Tenda ac15 Firmware |
Mon, 09 Jun 2025 03:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Sun, 08 Jun 2025 22:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was found in Tenda AC15 15.03.05.19_multi. It has been classified as critical. This affects the function formSetSafeWanWebMan of the file /goform/SetRemoteWebCfg of the component HTTP POST Request Handler. The manipulation of the argument remoteIp leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. | |
Title | Tenda AC15 HTTP POST Request SetRemoteWebCfg formSetSafeWanWebMan stack-based overflow | |
Weaknesses | CWE-119 CWE-121 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-06-08T22:31:07.063Z
Updated: 2025-06-09T03:11:32.785Z
Reserved: 2025-06-08T09:25:18.154Z
Link: CVE-2025-5849

Updated: 2025-06-09T03:11:26.437Z

Status : Analyzed
Published: 2025-06-08T23:15:20.713
Modified: 2025-06-09T19:04:44.777
Link: CVE-2025-5849

No data.