PT-2025-43377 · Tenda · Tenda Ac6 V2.0

Published

2025-10-11

·

Updated

2025-11-19

·

CVE-2025-60338

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Tenda AC6 V2.0 version 15.03.06.50
Description The Tenda AC6 V2.0 router contains a stack overflow in the page parameter within the DhcpListClient function. This issue allows attackers to cause a Denial of Service (DoS) by sending a crafted input. The vulnerability involves a buffer overflow when processing the page parameter via specially crafted HTTP requests.
Recommendations Update Tenda AC6 V2.0 to a version prior to 15.03.06.50.

Exploit

Fix

DoS

Memory Corruption

Weakness Enumeration

Related Identifiers

BDU:2025-13344
CVE-2025-60338

Affected Products

Tenda Ac6 V2.0