PT-2025-39794 · Tenda · Tenda Ac18

Yhryhryhr_Miemie

·

Published

2025-09-28

·

Updated

2025-09-28

·

CVE-2025-11123

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Tenda AC18 version 15.03.05.19
Description A flaw exists in Tenda AC18 version 15.03.05.19. The issue involves a stack-based buffer overflow in an unknown function of the file /goform/saveAutoQos. The enable argument can be manipulated to trigger this overflow. This manipulation can be initiated remotely. An exploit for this issue has been published.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Stack Overflow

Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2025-12399
CVE-2025-11123

Affected Products

Tenda Ac18