Back to CVE List

CVE-2025-15215

HIGH SEVERITY

CVSS Score & Metrics

Base Score
8.8 / 10
Vector String
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Vulnerability Description

A vulnerability was determined in Tenda AC10U 15.03.06.48/15.03.06.49. This affects the function formSetPPTPUserList of the file /goform/setPptpUserList of the component HTTP POST Request Handler. This manipulation of the argument list causes buffer overflow. It is possible to initiate the attack remotely. The exploit has been publicly disclosed and may be utilized.

Vulnerability Details

Published Date
Last Modified
CWE ID
CWE-119
Source
NVD
Vendor
tenda
Product
ac10u_firmware

External References

Discussion (0)

Add Comment

No comments yet. Be the first!