PT-2025-7079 · Tenda · Tenda Ac6

Wy876

·

Published

2025-02-12

·

Updated

2025-02-19

·

CVE-2025-25343

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Tenda AC6 version V15.03.05.16
Description The issue is a buffer overflow vulnerability in the formexeCommand function. This vulnerability can be exploited, potentially leading to unauthorized access or control. There is no information provided about the estimated number of potentially affected devices worldwide or real-world incidents where this issue was exploited.
Recommendations For Tenda AC6 version V15.03.05.16, as a temporary workaround, consider disabling the formexeCommand function until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Buffer Overflow

Weakness Enumeration

Related Identifiers

CVE-2025-25343

Affected Products

Tenda Ac6