Back to CVE List

CVE-2025-15254

HIGH SEVERITY

CVSS Score & Metrics

Base Score
8.8 / 10
Vector String
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Vulnerability Description

A vulnerability was found in Tenda W6-S 1.0.0.4(510). This affects the function TendaAte of the file /goform/ate of the component ATE Service. Performing manipulation results in os command injection. The attack may be initiated remotely. The exploit has been made public and could be used.

Vulnerability Details

Published Date
Last Modified
CWE ID
CWE-77
Source
NVD
Vendor
tenda
Product
w6-s_firmware

External References

Discussion (0)

Add Comment

No comments yet. Be the first!