PT-2025-35130 · Tenda · Tenda Ac10

Published

2025-08-28

·

Updated

2025-12-27

·

CVE-2025-57220

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Tenda AC10 versions 16.03.10.09 multi TDE01
Description An input validation flaw exists in the 'ate' service that allows for privilege escalation to root via a crafted UDP packet.
Recommendations Update to a newer firmware version to address this issue.

Fix

LPE

RCE

Weakness Enumeration

Related Identifiers

CVE-2025-57220

Affected Products

Tenda Ac10