Tenda · Tenda W12 · CVE-2025-3693
**Name of the Vulnerable Software and Affected Versions**
Tenda W12 version 3.0.0.5
**Description**
A critical issue affects the `cgiWifiRadioSet` function of the file `/bin/httpd`, leading to a stack-based buffer overflow. This can be exploited remotely.
**Recommendations**
For Tenda W12 version 3.0.0.5, as a temporary workaround, consider disabling the `cgiWifiRadioSet` function until a patch is available. Restrict access to the `/bin/httpd` file to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.